Malware

Win32/Kryptik_AGen.BGD malicious file

Malware Removal

The Win32/Kryptik_AGen.BGD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik_AGen.BGD virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Kryptik_AGen.BGD?


File Info:

name: FB5166972DBB94EA4FBB.mlw
path: /opt/CAPEv2/storage/binaries/0109042701aa14774e959b8bace2a4bf175d7eb6117398dd23051faf33ef09b0
crc32: 134A38C5
md5: fb5166972dbb94ea4fbbb89872f050cd
sha1: 3c2cf9c425fdd6d325ae51da8691f2482c550674
sha256: 0109042701aa14774e959b8bace2a4bf175d7eb6117398dd23051faf33ef09b0
sha512: 16a83c1652e7e3a93957129e93c4e595350484ec65639a6c63309999b42765a459249532d7902433f2a134815cd9bcbd8d54f1914b3db4924beae54d6ffee20e
ssdeep: 24576:CgDbqr3Ikp2K/QB/E+PUS/TnVJa/ZSCBHn677:lDGr4kp2AQB/E+X7VJgVBHn6
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15825CF9E1B95D6A3ED0743326D1EC736B114BD75329BDAB138A1B38630F27929207734
sha3_384: 9a0dd5c6961b792b07484543019f8246a255d9b560409b00134ce9802cb6606ae17944e8ca499ce0ff362fcce73d3047
ep_bytes: 035019a953399d2e56d894bfd492fc05
timestamp: 1974-02-09 00:00:00

Version Info:

0: [No Data]

Win32/Kryptik_AGen.BGD also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.104139
ClamAVWin.Packed.Razy-9836307-0
SkyhighBehavesLike.Win32.Picsys.fc
McAfeeTrojan-FVOQ!FB5166972DBB
MalwarebytesGeneric.Malware.AI.DDS
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005a45ef1 )
CrowdStrikewin/malicious_confidence_100% (D)
ArcabitTrojan.Generic.D196CB
BitDefenderThetaGen:NN.ZexaF.36608.!8Z@a84aMOh
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik_AGen.BGD
APEXMalicious
CynetMalicious (score: 100)
KasperskyVHO:Trojan.Win32.Khalesi.gen
BitDefenderTrojan.GenericKDZ.104139
NANO-AntivirusTrojan.Win32.Packed2.gmlrvu
AvastWin32:Evo-gen [Trj]
TencentTrojan.Win32.Selfmod.ka
EmsisoftTrojan.GenericKDZ.104139 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen2
VIPRETrojan.GenericKDZ.104139
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.fb5166972dbb94ea
SophosTroj/Agent-BFEY
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Copak.cypp
GoogleDetected
AviraTR/Crypt.XPACK.Gen2
MAXmalware (ai score=84)
Antiy-AVLTrojan/Win32.Kryptik.gify
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Cerber.MPI!MTB
ZoneAlarmVHO:Trojan.Win32.Khalesi.gen
GDataWin32.Trojan.PSE.1B28NHU
VaristW32/Trojan.MJSE-7842
AhnLab-V3Packed/Win.FJB.R622264
Acronissuspicious
VBA32Trojan.Copak
ALYacTrojan.GenericKDZ.104139
TACHYONTrojan/W32.Selfmod
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
IkarusTrojan-Downloader.Win32.FakeAlert
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.425fdd
DeepInstinctMALICIOUS

How to remove Win32/Kryptik_AGen.BGD?

Win32/Kryptik_AGen.BGD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment