Malware

Win32/Kryptik.JBG removal

Malware Removal

The Win32/Kryptik.JBG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.JBG virus can do?

  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • Unconventionial language used in binary resources: Catalan
  • Authenticode signature is invalid

How to determine Win32/Kryptik.JBG?


File Info:

name: 8F6A9698F5067B528721.mlw
path: /opt/CAPEv2/storage/binaries/2e726d78a604ce15edc79166028cd44be4b7b2e809b14f99e65ab6b6ee7e57ad
crc32: 120A35EC
md5: 8f6a9698f5067b5287213b310ccfc620
sha1: 9afd9d227c6b737ea2844b9179f87541f19fe46c
sha256: 2e726d78a604ce15edc79166028cd44be4b7b2e809b14f99e65ab6b6ee7e57ad
sha512: 6b251414cea679dea12a885f44e924055447bd149f0bdbccc76974ca67e3cac7243522ea7bbfe5e25b17eac2ded5bac944fa15f3876012cb71262a0be200a822
ssdeep: 768:jt06R0UKzOgnKqGR7//GPc0LOBhvBrHks3IiyhDYQbGmxlNaM+WGa1wuxnzgOYw1:vR0vxn3Pc0LCH9MtbvabUDzJYWu3Bg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19DA3D046B930B6DAF6A986358444FF815F3CBC290DF3C5B6345C22CEAA39C89864572D
sha3_384: 179171109f3733c47079c50382e13f751edd0998460fd2a638bf5cf0875e6b160b6c23cb14ca42da729ae4fdd0374970
ep_bytes: 558bec83ec2c8165ec000000008d5b56
timestamp: 2004-11-06 22:01:02

Version Info:

CompanyName: Macromedia, Inc.
FileDescription: Macromedia Flash Player 7.0 r19
FileVersion: 7,0,19,0
InternalName: Macromedia Flash Player 7.0
LegalCopyright: Copyright © 1996-2003 Macromedia, Inc.
LegalTrademarks: Macromedia Flash Player
OriginalFilename: SAFlashPlayer.exe
ProductName: Shockwave Flash
ProductVersion: 7,0,19,0
Translation: 0x0409 0x04b0

Win32/Kryptik.JBG also known as:

BkavW32.FamVT.DisbukCI.Trojan
LionicTrojan.Win32.Generic.lIHt
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Koobface.1
FireEyeGeneric.mg.8f6a9698f5067b52
CAT-QuickHealW32.Ramnit.DR
McAfeePWS-Zbot.gen.cn
CylanceUnsafe
K7AntiVirusTrojan ( 001f82c71 )
AlibabaTrojan:Win32/Kryptik.fb3a671c
K7GWTrojan ( 001f82c71 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Generic.SUG
CyrenW32/SuspPack.DC.gen!Eldorado
SymantecPacked.Protexor!gen1
ESET-NOD32a variant of Win32/Kryptik.JBG
APEXMalicious
ClamAVWin.Virus.Virut-6804273-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Koobface.1
NANO-AntivirusTrojan.Win32.Ramnit.bbgdmp
SUPERAntiSpywareTrojan.Agent/Gen-Pune
AvastWin32:Crypto-V [Trj]
TencentTrojan.Win32.Koobface.udb
Ad-AwareGen:Variant.Koobface.1
EmsisoftGen:Variant.Koobface.1 (B)
ComodoTrojWare.Win32.Kryptik.ILZ@39m3x2
DrWebTrojan.Siggen2.9448
ZillyaTrojan.Kryptik.Win32.825961
TrendMicroTROJ_DROPPR.SMAL
McAfee-GW-EditionBehavesLike.Win32.Dropper.nm
SophosMal/Generic-R + Mal/Ramnit-ZZ
IkarusVirus.Win32.Ramnit
GDataGen:Variant.Koobface.1
JiangminPacked.Krap.dljx
WebrootW32.Trojan.Krap.Gen
AviraTR/Patched.Ren.Gen
MAXmalware (ai score=100)
ArcabitTrojan.Koobface.1
MicrosoftTrojan:Win32/Ramnit
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Krap.R20076
BitDefenderThetaGen:NN.ZexaF.34638.gq1@aulsIQpH
ALYacGen:Variant.Koobface.1
TACHYONTrojan/W32.Krap.98733
VBA32BScope.Trojan.Inject
MalwarebytesNimnul.Virus.FileInfector.DDS
TrendMicro-HouseCallTROJ_DROPPR.SMAL
RisingTrojan.Win32.Fednu.tyo (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecurePacked.Krap.ar
FortinetW32/Kryptik.LW!tr
AVGWin32:Crypto-V [Trj]
Cybereasonmalicious.8f5067
PandaTrj/Pck_Pretorx.A

How to remove Win32/Kryptik.JBG?

Win32/Kryptik.JBG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment