Malware

How to remove “Win32/Kryptik.GWSZ”?

Malware Removal

The Win32/Kryptik.GWSZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GWSZ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

bitbucket.org

How to determine Win32/Kryptik.GWSZ?


File Info:

crc32: EFD93244
md5: b183da97012d2d5527be579edb4e4c61
name: B183DA97012D2D5527BE579EDB4E4C61.mlw
sha1: 6aa77bfc46e6c477bb7964f0fbe9fd65782d3252
sha256: ca8f13c07d3037a0cb9fb3fe7761ac9d4eeb12f62280471cd86da9f1c5b34892
sha512: c7f7e20f559ec963e912ee8b12f2ccf83ff6cdcb23f07fbc4ffa2423803ab441ec8cbe214510dadb162c9ed89cbe0f1a1cba5e577d42340449330a6fe377a678
ssdeep: 12288:MlZe6xdrErasWguUnHQDg+LufbYmo35SX9pinHjz7l3Er4g1:STfuQDRLufAG3inDzJe4g1
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GWSZ also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.27099
CynetMalicious (score: 100)
ALYacTrojan.PasswordStealer.GenericKDS.32499217
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1757932
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Zenpak.c841b587
K7GWTrojan ( 0055882c1 )
Cybereasonmalicious.7012d2
CyrenW32/Kryptik.AFN.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GWSZ
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
ClamAVWin.Ransomware.Ryuk-7181475-0
KasperskyHEUR:Trojan.Win32.Zenpak.gen
BitDefenderTrojan.PasswordStealer.GenericKDS.32499217
NANO-AntivirusTrojan.Win32.Chapak.gbazzr
MicroWorld-eScanTrojan.PasswordStealer.GenericKDS.32499217
TencentWin32.Trojan.Chapak.Pdvn
Ad-AwareTrojan.PasswordStealer.GenericKDS.32499217
SophosMal/Generic-R + Mal/GandCrab-G
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.SMOKELOAD.SMC2.hp
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
FireEyeGeneric.mg.b183da97012d2d55
EmsisoftTrojan-Ransom.Shade (A)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Chapak.iqm
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1115428
Antiy-AVLTrojan/Win32.Chapak
MicrosoftTrojan:Win32/Skeeyah.A!MTB
ArcabitTrojan.PasswordStealer.GenericS.D1EFE611
GDataWin32.Trojan.Kryptik.NL
AhnLab-V3Trojan/Win32.MalPe.R292782
Acronissuspicious
McAfeeTrojan-FRGD!B183DA97012D
MAXmalware (ai score=81)
VBA32Trojan.Chapak
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SMOKELOAD.SMC2.hp
RisingTrojan.Generic@ML.90 (RDML:+ijO1GewaYiDAf4j6Poxqg)
YandexTrojan.Chapak!KtJinxlzLrk
IkarusTrojan.Win32.Danabot
MaxSecureTrojan.Malware.73832973.susgen
FortinetW32/Kryptik.GXMF!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GWSZ?

Win32/Kryptik.GWSZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment