Malware

What is “Win32/Kryptik.JUE”?

Malware Removal

The Win32/Kryptik.JUE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.JUE virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

Related domains:

wpad.local-net

How to determine Win32/Kryptik.JUE?


File Info:

name: DDADFD69CB87A215B1CF.mlw
path: /opt/CAPEv2/storage/binaries/d73ba6147816f5405a79f30ad5cdff7623ea694ddc615ec0c7fcdb9e5811c9b6
crc32: 08C2B278
md5: ddadfd69cb87a215b1cf304863d191fb
sha1: ff1af3450587d5dbcb42c76212bb6ac23627ce80
sha256: d73ba6147816f5405a79f30ad5cdff7623ea694ddc615ec0c7fcdb9e5811c9b6
sha512: 01178e3064d2fb8af5fe62601f688fffc00cad25d4f272abf51e50384fe81b191f497a59364f365e5513ebd9a449020aadfac53c61fb51aff92aaccbb8043fdd
ssdeep: 6144:P6/drSpFXiv5aEMM4G6GarnC329r7pt7KSADQk1vjp:P6iwvzUCcnCvj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11074E032F09618BED23B47304A27F57BF778B5053221592F37DCA2701F609A5A626B2D
sha3_384: 4d4423ca2e3edabcc2c37d6e02424dd0c1c2507bd64778cd66a71b1cba7530a81c35691fc019026b7bacb325d9e5730d
ep_bytes: e86f0b0000e98efeffff3b0d24d04400
timestamp: 2017-11-11 13:02:38

Version Info:

0: [No Data]

Win32/Kryptik.JUE also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.GenericKD.3013029
FireEyeGeneric.mg.ddadfd69cb87a215
ALYacTrojan.GenericKD.3013029
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1349827
SangforTrojan.Win32.Wacatac.B
K7AntiVirusTrojan ( 004d029d1 )
AlibabaTrojan:Win32/Kryptik.69e4cd40
K7GWTrojan ( 004d029d1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.JUE
Paloaltogeneric.ml
BitDefenderTrojan.GenericKD.3013029
NANO-AntivirusTrojan.Win32.Kryptik.exjwww
Ad-AwareTrojan.GenericKD.3013029
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0PJC21
McAfee-GW-EditionBehavesLike.Win32.RAHack.fh
EmsisoftTrojan.GenericKD.3013029 (B)
IkarusTrojan.Win32.Crypt
MAXmalware (ai score=99)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.GenericKD.3013029
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4727958
McAfeeRDN/Generic.com
MalwarebytesMachineLearning/Anomalous.95%
TrendMicro-HouseCallTROJ_GEN.R002C0PJC21
YandexTrojan.Kryptik!22oOfVCQxMo
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.JUE!tr
PandaTrj/CI.A

How to remove Win32/Kryptik.JUE?

Win32/Kryptik.JUE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment