Malware

How to remove “Win32/Kryptik.GUCF”?

Malware Removal

The Win32/Kryptik.GUCF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GUCF virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Harvests information related to installed mail clients

Related domains:

bascif.com

How to determine Win32/Kryptik.GUCF?


File Info:

crc32: 53BCA58C
md5: 8b2fe02e4c2f00122cdf43bc7e06277e
name: out.exe
sha1: 5586a9d9f7c55746440b9acc5e2750976f760e13
sha256: b61d3d1fbd98a10bd0f050173ca38941fb11b859872894b88bca7cfdd5cd2597
sha512: 62c0acf70ec2cbb943d302d120a92428ab51c6af882c0e7f61fafc7e05804326e121b0a0e72ca62509b2052d7f9de202c45e84bc144d7b152b0582b394360bc2
ssdeep: 12288:y1nPEWpEQe6aP76Lzr8kZG2HyOtineJ3q2aONPd:y1Ma4pO8kZG2AEq2JNV
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GUCF also known as:

MicroWorld-eScanTrojan.GenericKD.41421956
Qihoo-360HEUR/QVM08.0.CA01.Malware.Gen
McAfeeRDN/Generic.hbg
CylanceUnsafe
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.41421956
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
Invinceaheuristic
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
GDataTrojan.GenericKD.41421956
KasperskyHEUR:Trojan.Win32.Generic
AlibabaBackdoor:Win32/KZip.7d5e23b6
NANO-AntivirusTrojan.Win32.Zenpak.frhumi
AegisLabTrojan.Win32.Malicious.4!c
RisingTrojan.Kryptik!8.8 (CLOUD)
Ad-AwareTrojan.GenericKD.41421956
EmsisoftTrojan.GenericKD.41421956 (B)
ComodoMalware@#1dpyvqr74u5oa
F-SecureHeuristic.HEUR/AGEN.1125275
DrWebTrojan.PWS.Steam.16681
ZillyaTrojan.Generic.Win32.847535
TrendMicroBackdoor.Win32.FLAWEDAMMY.SMKAT
McAfee-GW-EditionBehavesLike.Win32.Downloader.hh
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.8b2fe02e4c2f0012
SophosMal/Generic-S
IkarusBackdoor.Rat.FlawedAmmyy
JiangminTrojan.Generic.dyhom
WebrootTrojan.Dropper.Gen
AviraHEUR/AGEN.1125275
Antiy-AVLTrojan/Win32.Zenpak
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D2780C84
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Wacatac.C!ml
AhnLab-V3Win-Trojan/Clopran.Exp
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34122.FuW@aWwz4ig
ALYacBackdoor.RAT.FlawedAmmyy
VBA32BScope.Trojan.Zenpak
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.GUCF
TrendMicro-HouseCallBackdoor.Win32.FLAWEDAMMY.SMKAT
SentinelOneDFI – Malicious PE
FortinetW32/Kryptik.GTDL!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.9f7c55
Paloaltogeneric.ml
MaxSecureTrojan.Malware.7164915.susgen

How to remove Win32/Kryptik.GUCF?

Win32/Kryptik.GUCF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment