Malware

Win32/Kryptik_AGen.BGD information

Malware Removal

The Win32/Kryptik_AGen.BGD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik_AGen.BGD virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Win32/Kryptik_AGen.BGD?


File Info:

name: C9362E3AEBB32CCF81C1.mlw
path: /opt/CAPEv2/storage/binaries/c2f465840b3b80e9c06e212ab7d8084822272e0e0aba63f7049dadcb76e9edd4
crc32: 290750A5
md5: c9362e3aebb32ccf81c1045f76c89b3b
sha1: 53cd3ad3d7a17b3f857cbfc4101d7f630ba5c3ce
sha256: c2f465840b3b80e9c06e212ab7d8084822272e0e0aba63f7049dadcb76e9edd4
sha512: 09c640a082796db894da906caf32bf0e56f154399fd15b96faae5f9949809f94c06024914665eedb2e5569b034fafce3418be35d9e6e2397973f1e208313809f
ssdeep: 12288:uUhlvzwTMfzHUWZcMV6VQ5zCD4VZRDGWF1m3aYhOA6eXV:u8lvz1rHUcV6VQ5zY431CaYAeXV
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T157C4BE99FC8F0A9DDCEBBC3739B2A44FD4C2E14A4FFE0098D96150642D36590B1E58D6
sha3_384: d31864ffa7854ccefb822c54450c14e346d78820c544ee692b2181d57f5d6dd4d7d597439d5dac286cdd8025f598f0ce
ep_bytes: af43d3afff2a5728facb5eb9e8893603
timestamp: 1974-02-09 00:00:00

Version Info:

0: [No Data]

Win32/Kryptik_AGen.BGD also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.98614
FireEyeGeneric.mg.c9362e3aebb32ccf
SkyhighBehavesLike.Win32.RAHack.hc
McAfeeTrojan-FVOQ!C9362E3AEBB3
MalwarebytesCrypt.Trojan.MSIL.DDS
VIPRETrojan.GenericKDZ.98614
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a45ef1 )
K7GWTrojan ( 005a45ef1 )
Cybereasonmalicious.3d7a17
ArcabitTrojan.Generic.D18136
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik_AGen.BGD
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Razy-9828382-0
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.GenericKDZ.98614
NANO-AntivirusTrojan.Win32.PackedDownloader.ijxqni
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Copak.hn
TACHYONTrojan/W32.Selfmod
SophosTroj/Agent-BFEY
F-SecureTrojan.TR/Crypt.ZPACK.Gen
EmsisoftTrojan.GenericKDZ.98614 (B)
IkarusTrojan-Downloader.Win32.FakeAlert
JiangminTrojan.Copak.czfo
VaristW32/Trojan.NJGF-3047
AviraTR/Crypt.ZPACK.Gen
Antiy-AVLTrojan/Win32.Kryptik.girh
Kingsoftmalware.kb.a.1000
XcitiumTrojWare.Win32.Kryptik.TLS@812zm8
MicrosoftTrojan:Win32/Glupteba.MT!MTB
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataWin32.Trojan.PSE.11XGYE9
GoogleDetected
AhnLab-V3Packed/Win.FJB.C5394144
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.36680.K8Z@a8s1DTi
ALYacTrojan.GenericKDZ.98614
MAXmalware (ai score=84)
VBA32Trojan.Khalesi
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.BF57 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GIFQ!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Kryptik_AGen.BGD?

Win32/Kryptik_AGen.BGD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment