Risk

Win32/RiskWare.Crypter.DY information

Malware Removal

The Win32/RiskWare.Crypter.DY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/RiskWare.Crypter.DY virus can do?

  • Unconventionial language used in binary resources: Japanese
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid

How to determine Win32/RiskWare.Crypter.DY?


File Info:

name: EB1431A4DB699CFB0B2C.mlw
path: /opt/CAPEv2/storage/binaries/a626eb8602d696abf31ef04ac0db51b254b8217f943bd2b982e0c3caa77a9f68
crc32: 81A088D2
md5: eb1431a4db699cfb0b2c54b32b0c650a
sha1: c39becc22963d24df98192fc8fb72cb53a7f8e07
sha256: a626eb8602d696abf31ef04ac0db51b254b8217f943bd2b982e0c3caa77a9f68
sha512: 8fe3e1a0cf1350085256044af90fea2c6c8656e2384cfbf164823315509355ef792efc7074ac9a4f2244a7d1868d881ec01ef04fd22a4fc80b38b6e6e76112be
ssdeep: 768:klNO326R2BKDXIDkrjK4noqZMkr+W9A9VuzjWePtg3DMcyTL0FbW8:6NO32J80DQjnoqGlnkgzMI68
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17003E13727D4B500FA03E87C8A730912697A75458BEB43AFF7DD10192EB9A541C13EAD
sha3_384: 9fc471e50ad50d90d42a7624ac9aed9dea1fe2915b51af421b7c98625c36d08643ade3c7627dd22f4953f2bf4f83e964
ep_bytes: 60be002041008dbe00f0feff5783cdff
timestamp: 2016-06-11 11:03:57

Version Info:

0: [No Data]

Win32/RiskWare.Crypter.DY also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
CynetMalicious (score: 100)
FireEyeGeneric.mg.eb1431a4db699cfb
Cylanceunsafe
ZillyaTool.Crypter.Win32.2976
SangforRiskware.Win32.Crypter.V4tk
AlibabaRiskWare:Win32/Crypter.335ca6fb
CyrenW32/FakeAlert.FY.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32Win32/RiskWare.Crypter.DY
APEXMalicious
AvastWin32:Dropper-gen [Drp]
Trapminemalicious.high.ml.score
SophosGeneric Reputation PUA (PUA)
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
Antiy-AVLRiskWare/Win32.Crypter
MicrosoftPUA:Win32/Presenoker
GoogleDetected
MalwarebytesMalware.Heuristic.1003
RisingTrojan.Bitrep!8.F596 (CLOUD)
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Crypter
AVGWin32:Dropper-gen [Drp]
Cybereasonmalicious.22963d
DeepInstinctMALICIOUS

How to remove Win32/RiskWare.Crypter.DY?

Win32/RiskWare.Crypter.DY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment