Malware

Win32/Kryptik.YSN removal tips

Malware Removal

The Win32/Kryptik.YSN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.YSN virus can do?

  • At least one process apparently crashed during execution
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Kryptik.YSN?


File Info:

name: CAB7744D25484BD47654.mlw
path: /opt/CAPEv2/storage/binaries/48040ec9ded53f45c1c73f232f961c19b451cbd9d0b0a76c30737513e079cbf9
crc32: 2071DE3F
md5: cab7744d25484bd476545726bdad02d5
sha1: 70c88e79dba6b17f90fbca8cca1c5126e70f154b
sha256: 48040ec9ded53f45c1c73f232f961c19b451cbd9d0b0a76c30737513e079cbf9
sha512: 59f78f2029b988e3eb571ecdccd8a5c4743314db03e2090949d697b25062e3f7d99e9d6a7a8b3aab3396e41e0145dd925e42f693bfa296cd8faac03efa603bcc
ssdeep: 3072:8LQo7P8ngioaxp0V08fTpShkyvHQqsP6bUqrqyjSNDNDT2Y:ZoYngPaUHfXqs/q/G5TF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17E24CEF350219C5BC03049B0CBE5CB8787E57E219F405E6B972239A8E8B35E47B2BD65
sha3_384: d05ae992ccdf89778beaae3005f7ca975b40ab951813b69c3765fb376f93505ddce9eb6793374e457cf361d1394ed69c
ep_bytes: 8b3d182043008b1d0c20430023fb891d
timestamp: 2011-04-23 11:57:32

Version Info:

CompanyName: Promise Technology, Inc.
FileDescription: Home Fanny Dose
FileVersion: 7.9
InternalName: Await Limbs Later
OriginalFilename: Kfnpe.exe
ProductName: Ufo
ProductVersion: 7.9
Translation: 0x0409 0x04b0

Win32/Kryptik.YSN also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.cab7744d25484bd4
CAT-QuickHealTrojanPWS.Zbot.Y
ALYacGen:Variant.Crypt.61
CylanceUnsafe
VIPRELookslike.Win32.Sirefef.zh (v)
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojan:Win32/EncPk.c56b235c
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.d25484
BitDefenderThetaGen:NN.ZexaF.34212.my1@a0EVRKei
CyrenW32/Symmi.AP.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.YSN
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Crypt.61
NANO-AntivirusTrojan.Win32.Panda.vodgd
MicroWorld-eScanGen:Variant.Crypt.61
AvastWin32:Reveton-Y [Trj]
TencentMalware.Win32.Gencirc.114bf15f
Ad-AwareGen:Variant.Crypt.61
EmsisoftGen:Variant.Crypt.61 (B)
ZillyaTrojan.Kryptik.Win32.930572
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
SophosML/PE-A + Mal/EncPk-ABFU
IkarusTrojan.Crypt
GDataGen:Variant.Crypt.61
JiangminTrojan.Generic.dwsjt
WebrootW32.Rogue.Gen
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.Unknown
ArcabitTrojan.Crypt.61
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftPWS:Win32/Zbot!ml
SentinelOneStatic AI – Malicious PE
AhnLab-V3Malware/Win32.Generic.C1955701
Acronissuspicious
McAfeeGenericRXKX-KI!CAB7744D2548
VBA32BScope.Trojan.Cloxer
MalwarebytesMalware.Heuristic.1006
APEXMalicious
RisingSpyware.Zbot!8.16B (CLOUD)
YandexTrojan.Agent!b+q5F6MALgQ
MAXmalware (ai score=100)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.ABC!tr
AVGWin32:Reveton-Y [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Kryptik.YSN?

Win32/Kryptik.YSN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment