Malware

Win32/Kryptik_AGen.BGD removal guide

Malware Removal

The Win32/Kryptik_AGen.BGD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik_AGen.BGD virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Kryptik_AGen.BGD?


File Info:

name: C55646B1573F2AA945D2.mlw
path: /opt/CAPEv2/storage/binaries/ff76db8e1cfa29553b71c0420c5e1b3fc63e32dcef597f3591b572060d5a6c9b
crc32: 33DE515F
md5: c55646b1573f2aa945d2ea10453ebe34
sha1: 4f9e11fe86b24087f10831c179c4560bce598053
sha256: ff76db8e1cfa29553b71c0420c5e1b3fc63e32dcef597f3591b572060d5a6c9b
sha512: 4c2e6de72ed599e88c403ef485a5d962801698c692c1eb8c57008c5cf7f79282e77713f5e6dc04dbe4fd01b4ab72897f9be9034ea4b11898f18ce38b34e42b15
ssdeep: 24576:G08ixfNRswKOl7JZOkPJU6PtN5Q/RCa/ZSCBHn677:G95UlWUN5JgVBHn6
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1FB25C05E13E05287D46A477EAF2C82462611FD7C679BD77EB900794A3822B84FE47B30
sha3_384: 5ab712db7b3c1a052a2aa29abde5c3cfef76f386e8d3cb0e2be3f3eb6bddcc467cfbdef39aa8dc1b83666da2a1de40ad
ep_bytes: 826e292dd207adaad7e6a43b55accc81
timestamp: 1974-02-09 00:00:00

Version Info:

0: [No Data]

Win32/Kryptik_AGen.BGD also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.104139
FireEyeGeneric.mg.c55646b1573f2aa9
SkyhighBehavesLike.Win32.Generic.fc
ALYacTrojan.GenericKDZ.104139
MalwarebytesGeneric.Malware.AI.DDS
ZillyaTrojan.KryptikAGen.Win32.20841
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.e86b24
ArcabitTrojan.Generic.D196CB
VirITTrojan.Win32.Dnldr38.BZOU
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BGD
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Razy-9836307-0
KasperskyVHO:Trojan.Win32.Khalesi.gen
BitDefenderTrojan.GenericKDZ.104139
NANO-AntivirusTrojan.Win32.Selfmod.idecwp
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Selfmod.ka
TACHYONTrojan/W32.Selfmod
SophosTroj/Agent-BFEY
F-SecureTrojan.TR/Crypt.XPACK.Gen2
DrWebTrojan.Siggen12.42976
VIPRETrojan.GenericKDZ.104139
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKDZ.104139 (B)
IkarusTrojan-Downloader.Win32.FakeAlert
JiangminTrojan.Selfmod.enu
VaristW32/Trojan.MJSE-7842
AviraTR/Crypt.XPACK.Gen2
Antiy-AVLTrojan/Win32.Kryptik.gify
Kingsoftmalware.kb.a.981
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Cerber.MPI!MTB
ZoneAlarmVHO:Trojan.Win32.Khalesi.gen
GDataWin32.Trojan.PSE.1B28NHU
GoogleDetected
AhnLab-V3Packed/Win.FJB.R622264
Acronissuspicious
McAfeeTrojan-FVOQ!C55646B1573F
MAXmalware (ai score=89)
VBA32Trojan.Copak
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.B34D (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
BitDefenderThetaGen:NN.ZexaF.36608.!8Z@a84aMOh
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Kryptik_AGen.BGD?

Win32/Kryptik_AGen.BGD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment