Malware

What is “Win32/Kryptik.GUYL”?

Malware Removal

The Win32/Kryptik.GUYL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GUYL virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.GUYL?


File Info:

crc32: 8D9C1D37
md5: cdf1c823ee0a7e9ac94733af1487bf07
name: CDF1C823EE0A7E9AC94733AF1487BF07.mlw
sha1: 4026108d3d2ff148ae8c1b337bcacea421829e6d
sha256: cc9012a29290d0b54c33e51c10070325a4a1c3c885cbde808314213f2fcca6f4
sha512: dc87966b049131a92e4b84ce4a22061e378f151b8f91a6cc118f0a9404524f3a59b35063171fc98b1245b86c1f64491d8a4113e04f337459d8ab0f9eb894c253
ssdeep: 6144:n4j8nweURV7mQehhYXtfM2+KK2WR8lO2shQxiSAEc6LRYR:n4joDw67hUpM2+b5EMQxiS5cQYR
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2019, mhjhfkh
InternalName: fghfhjkcgyg.exe
FileVersion: 1.0.5.4
ProductVersion: 1.9.6
Translation: 0x0841 0x04c4

Win32/Kryptik.GUYL also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00555e5a1 )
LionicAdware.Win32.Generic.mCzN
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24943
CynetMalicious (score: 100)
CAT-QuickHealRansom.Stop.MP4
ALYacTrojan.Ransom.Sodinokibi
CylanceUnsafe
ZillyaExploit.Nekto.Win32.25
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Azorult.6bd20ee6
K7GWTrojan ( 00553c571 )
Cybereasonmalicious.3ee0a7
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GUYL
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.GenericKDZ.57209
NANO-AntivirusTrojan.Win32.Zenpak.fudsfl
ViRobotTrojan.Win32.Ransom.471552.B
MicroWorld-eScanTrojan.GenericKDZ.57209
TencentWin32.Trojan.Generic.Tdzd
Ad-AwareTrojan.GenericKDZ.57209
SophosMal/Generic-S + Mal/GandCrab-G
BitDefenderThetaGen:NN.ZexaF.34236.wu0@ae0aBHjG
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.SODINOK.SM.hp
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
FireEyeGeneric.mg.cdf1c823ee0a7e9a
EmsisoftTrojan.GenericKDZ.57209 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Fakap.ck
AviraHEUR/AGEN.1107506
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2C21F4B
MicrosoftTrojan:Win32/Azorult.SF!MTB
GDataTrojan.GenericKDZ.57209
AhnLab-V3Win-Trojan/MalPe22.Suspicious.X1995
Acronissuspicious
McAfeeGenericRXIF-NQ!CDF1C823EE0A
MAXmalware (ai score=100)
VBA32Malware-Cryptor.Azorult.gen
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SODINOK.SM.hp
RisingTrojan.Generic@ML.86 (RDMK:zkd4XA/C6R17PMTUkGAzIg)
YandexTrojan.GenAsa!f3QxbR9Tw7c
IkarusTrojan.Win32.Danabot
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Kryptik.GWIV!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GUYL?

Win32/Kryptik.GUYL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment