Malware

How to remove “Win32/Kryptik_AGen.BRI”?

Malware Removal

The Win32/Kryptik_AGen.BRI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik_AGen.BRI virus can do?

  • Sample contains Overlay data
  • Unconventionial language used in binary resources: Turkish
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Kryptik_AGen.BRI?


File Info:

name: 65DEE72942AC77281A27.mlw
path: /opt/CAPEv2/storage/binaries/a33b8c4a7a0cc1089245cbf25259101f71f6460aa1f458245145341589c57364
crc32: C9B9F80D
md5: 65dee72942ac77281a278a41abe1dde3
sha1: 366ad0e48a3f08f5190e33485af064f83057cc37
sha256: a33b8c4a7a0cc1089245cbf25259101f71f6460aa1f458245145341589c57364
sha512: 12f2162d38a96b14798d6575a419a886b813d1bb8a29663ef3440c3a440880cdefc50268a4720015dea8430027b0c0258a4eee9d0d5a6b85a85882a86d8af888
ssdeep: 6144:7R/bxf4NuX1Ed5hZ9UxhX4O498sfti2QBm1vYA9:7Rzx+uedXrQ4984HQB6YA9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1142413248AE39D21F36643FA27743D3463F62F206B4125D69A9E3FB496B47D7000A673
sha3_384: 970e06be9e1dbb27c9860d7c901a847cd6779724da9971a98105fda2599a0a1e27df51e3e43f8e54f2687bf4d3c7bc4f
ep_bytes: 55e9663005000000006ac76a216800f8
timestamp: 2011-10-02 06:40:09

Version Info:

CompanyName: BitMefender S.R.L.
FileDescription: BitMefender Antivirus Scanner
FileVersion: 13,0,21,1
InternalName: GUIScanner
LegalCopyright: Copyright (C) 2010
OriginalFilename: uiscan.exe
ProductName: BitMefender 2016
ProductVersion: 13,0,18,344
Translation: 0x0409 0x04b0

Win32/Kryptik_AGen.BRI also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader9.8340
MicroWorld-eScanGen:Variant.Lazy.347141
ClamAVWin.Trojan.Yakes-1870
McAfeeGenericRXWB-BJ!65DEE72942AC
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005a60f61 )
AlibabaMalware:Win32/km_2eb30.None
K7GWTrojan ( 005a60f61 )
Cybereasonmalicious.942ac7
BitDefenderThetaGen:NN.ZexaF.36250.ny1@aC@XJGjO
VirITTrojan.Win32.Generic.BDPN
CyrenW32/Zbot.OQ.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik_AGen.BRI
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Lazy.347141
SUPERAntiSpywareTrojan.Agent/Gen-Falcomp
AvastWin32:Evo-gen [Trj]
TencentMalware.Win32.Gencirc.10bee3cb
EmsisoftGen:Variant.Lazy.347141 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen7
VIPREGen:Variant.Lazy.347141
TrendMicroTSPY_ZBOT.SM3R
McAfee-GW-EditionBehavesLike.Win32.Downloader.dc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.65dee72942ac7728
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
GDataGen:Variant.Lazy.347141
AviraTR/Crypt.XPACK.Gen7
Antiy-AVLTrojan/Win32.Yakes
ArcabitTrojan.Lazy.D54C05
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
GoogleDetected
AhnLab-V3Trojan/Win.Yakes.R582239
ALYacGen:Variant.Lazy.347141
MAXmalware (ai score=86)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/GdSda.A
TrendMicro-HouseCallTSPY_ZBOT.SM3R
RisingSpyware.Zbot!1.A1BA (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Yakes.dwzw
FortinetW32/Wacatac.B!tr
AVGWin32:Evo-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Kryptik_AGen.BRI?

Win32/Kryptik_AGen.BRI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment