Malware

About “Win32/Kryptik.DHHI” infection

Malware Removal

The Win32/Kryptik.DHHI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.DHHI virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Kryptik.DHHI?


File Info:

crc32: AD2F74F4
md5: 32f285066109efdc7be0545531964324
name: 32F285066109EFDC7BE0545531964324.mlw
sha1: 66837a13820767c19a69588e6345811d66e5b34e
sha256: 11b83ec866586252bacf2e20715c778cc6f91eef42caf3e7e17a8bcbb79110e9
sha512: 0dfaae8538a9fa2b9232acd3bc1db5ec723c47e8be287b32a63cb33cf7f7c9fa6ea44287ae549dc714e6b9143b5b6b29df9f3103f3f1d09ee7a51713788afe3b
ssdeep: 3072:3s2gzvh1Wf1loMubZawT6eCGfqy12ddqRh+yFc8OvkfWzSv3BQ:3slzmfi9awT6eCwk0wyFcxvkfTv2
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2009-2010 Adobe Systems Incorporated. All rights reserved.
InternalName: TokenGenerator64
FileVersion: 1.0.172.0
CompanyName: Adobe Systems Incorporated
ProductName: TokenGenerator64.exe
ProductVersion: 1.0.172.0
FileDescription: TokenGenerator64.exe
OriginalFilename: TokenGenerator64.exe
Translation: 0x0409 0x04b0

Win32/Kryptik.DHHI also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.34625079
FireEyeGeneric.mg.32f285066109efdc
ALYacTrojan.Ransom.cerber
VIPRETrojan.Win32.Generic!BT
SangforRansom.Win32.Cerber_68.se
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.34625079
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Trojan.Kryptik.awh
SymantecRansom.Cerber
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Ransomware.Cerber-7133995-0
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaRansom:Win32/Cerber.96cc543d
NANO-AntivirusTrojan.Win32.Encoder.iapfqh
RisingTrojan.Kryptik!1.AF0E (CLOUD)
Ad-AwareTrojan.GenericKD.34625079
EmsisoftTrojan.GenericKD.34625079 (B)
ComodoTrojWare.Win32.Kryptik.FBWM@6gt9t1
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Encoder.4794
ZillyaTrojan.Kryptik.Win32.2566805
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.dh
SophosMal/Generic-S + Mal/Dampatch-A
IkarusTrojan.Crypt
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_58%
Antiy-AVLTrojan[Ransom]/Win32.Cerber
MicrosoftRansom:Win32/Cerber
ArcabitTrojan.Generic.D2105637
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataTrojan.GenericKD.34625079
CynetMalicious (score: 100)
McAfeeArtemis!32F285066109
MalwarebytesMalware.Heuristic.1003
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Kryptik.DHHI
TencentMalware.Win32.Gencirc.10ce0540
SentinelOneStatic AI – Malicious PE
FortinetW32/Encoder.2438!tr
BitDefenderThetaGen:NN.ZexaF.34590.ry1@a4Btnmei
AVGWin32:Malware-gen
Cybereasonmalicious.66109e
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HxMBPUcA

How to remove Win32/Kryptik.DHHI?

Win32/Kryptik.DHHI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment