Malware

Win32/Kryptik.GPRV removal instruction

Malware Removal

The Win32/Kryptik.GPRV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GPRV virus can do?

  • Unconventionial binary language: Tamil
  • Unconventionial language used in binary resources: Gaelic
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.GPRV?


File Info:

crc32: 3D693C9A
md5: 0caf0dd076cbbb9836de994bf8fceb3e
name: 0CAF0DD076CBBB9836DE994BF8FCEB3E.mlw
sha1: b63c5761183d75ea12fb8cc304b7b1287ed2aa27
sha256: edb831b75267018e96d187665045773e59122e813b1e1ae369e0758f3559a038
sha512: f94303026095b167d5ef2031fce062184568ae7909a15aee28882baf53e32f113dcf9542766179ef30fed3006bd12c197e89d5efabbe06e84b55e27ff1d9bcd7
ssdeep: 3072:cyWePsb6WL40gLYddHQ5H1Mqdrq8iuw882mlSmLh7aH:cyaVL40gLYvYH1Mqdr7iP/omN7
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2018, wumozurizu
InternalName: yedoxamuse.exe
FileVersion: 10.1.5.100
ProductVersion: 10.1.5.100
Translation: 0x0449 0x04b1

Win32/Kryptik.GPRV also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00547c231 )
LionicTrojan.Win32.Stealer.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Mint.Jamg.C
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Kryptik.685c1c88
K7GWTrojan ( 00547c231 )
Cybereasonmalicious.076cbb
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GPRV
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Mint.Jamg.C
NANO-AntivirusTrojan.Win32.Kryptik.fnbeut
ViRobotTrojan.Win32.GandCrab.Gen.B
MicroWorld-eScanTrojan.Mint.Jamg.C
TencentWin32.Trojan-spy.Stealer.Ijf
Ad-AwareTrojan.Mint.Jamg.C
SophosMal/Generic-S + Mal/GandCrab-G
ComodoTrojWare.Win32.TrojanDownloader.Dofoil.PH@82bs73
BitDefenderThetaGen:NN.ZexaF.34170.kmKfaS4fitaG
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.SODINOK.SM.hp
McAfee-GW-EditionBehavesLike.Win32.Rimecud.cc
FireEyeGeneric.mg.0caf0dd076cbbb98
EmsisoftTrojan.Mint.Jamg.C (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cynri
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan[Spy]/Win32.Stealer
MicrosoftRansom:Win32/Gandcrab
ArcabitTrojan.Mint.Jamg.C
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Mint.Jamg.C
AhnLab-V3Trojan/Win32.Gandcrab.R255352
Acronissuspicious
McAfeeArtemis!0CAF0DD076CB
MAXmalware (ai score=100)
VBA32BScope.Trojan.Diple
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojan.Win32.SODINOK.SM.hp
RisingMalware.Obscure/Heur!1.A89E (CLASSIC)
YandexTrojan.GenAsa!z2wm+MTyOL0
IkarusTrojan.Crypt
MaxSecureRansomeware.CRAB.gen
FortinetW32/Kryptik.GQOC!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Win32/Kryptik.GPRV?

Win32/Kryptik.GPRV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment