Malware

How to remove “Win32/Kryptik.GVMZ”?

Malware Removal

The Win32/Kryptik.GVMZ file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Win32/Kryptik.GVMZ virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Win32/Kryptik.GVMZ?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: Trojan.GenericKD.32633121 (B)

File Info:

Name: sokge.exe

Size: 146432

Type: PE32 executable (GUI) Intel 80386, for MS Windows

MD5: 108ea07190490f1b30f6be2f212c2932

SHA1: f33c9de8bf35827bdc00d568064991449829f694

SH256: bc8740f5f6372fdd41dc920c8e4d9edbc7629dca04a755fc6e6ff07e7b154f45

Version Info:

[No Data]

Win32/Kryptik.GVMZ also known as:

ALYacTrojan.Proxy.Sybici
APEXMalicious
AVGWin32:Trojan-gen
Ad-AwareTrojan.GenericKD.32633121
AegisLabTrojan.Win32.Sybici.h!c
AhnLab-V3Malware/Win32.Generic.C3545665
AlibabaTrojanProxy:Win32/Sybici.a0b7e9dc
ArcabitTrojan.Generic.D1F1F121
AvastWin32:Trojan-gen
AviraTR/AD.Coroxy.stlny
BitDefenderTrojan.GenericKD.32633121
BitDefenderThetaGen:NN.ZexaF.32251.iC0@aGUyv2ci
CAT-QuickHealTrojan.Fuery
ComodoMalware@#33bkfltu7sw1b
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
CyrenW32/Trojan.ZMGZ-7871
DrWebTrojan.DownLoader30.29539
ESET-NOD32a variant of Win32/Kryptik.GVMZ
EmsisoftTrojan.GenericKD.32633121 (B)
F-SecureTrojan.TR/AD.Coroxy.stlny
FireEyeTrojan.GenericKD.32633121
FortinetW32/Kryptik.GVMZ!tr
GDataTrojan.GenericKD.32633121
IkarusTrojan.Win32.Crypt
JiangminTrojanProxy.Sybici.t
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
KasperskyTrojan-Proxy.Win32.Sybici.ft
MAXmalware (ai score=85)
MalwarebytesTrojan.Downloader
McAfeeRDN/Generic.dx
McAfee-GW-EditionRDN/Generic.dx
MicroWorld-eScanTrojan.GenericKD.32633121
MicrosoftTrojan:Win32/Skeeyah.A!MTB
NANO-AntivirusTrojan.Win32.Sybici.geokgu
Paloaltogeneric.ml
PandaGeneric Malware
Qihoo-360Win32/Trojan.Proxy.637
RisingTrojan.Generic@ML.96 (RDMK:6WxK8MuzfgrbmhixfbG4ig)
SophosMal/Generic-S
SymantecTrojan.Gen.MBT
TrendMicroTROJ_GEN.R002C0WJP19
TrendMicro-HouseCallTROJ_GEN.R002C0WJP19
VBA32TScope.Malware-Cryptor.SB
VIPRETrojan.Win32.Generic!BT
WebrootW32.Trojan.Gen
YandexTrojan.PR.Sybici!
ZillyaTrojan.Kryptik.Win32.1800047
ZoneAlarmTrojan-Proxy.Win32.Sybici.ft

How to remove Win32/Kryptik.GVMZ?

Win32/Kryptik.GVMZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment