Malware

Win32/Kryptik.FDDH removal

Malware Removal

The Win32/Kryptik.FDDH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.FDDH virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Win32/Kryptik.FDDH?


File Info:

crc32: 17D43920
md5: 7b94f8aa56c53074ec20c56e8cc04879
name: 7B94F8AA56C53074EC20C56E8CC04879.mlw
sha1: 92b4687008e4a165751dfbf8a2ba3313c7d183b2
sha256: 88fb9523e74c060908a20649fb68c9a7f47276dd3b5dffd273a3fadf69890a34
sha512: 417cd4a18248d5d1a8c18ac24c6425d46beb18036096acffffd3cfbd954adf2f22177747471ff50dbd2fe25fee3f133a74f0cef2521bb1273ab6aedc5f4d3613
ssdeep: 12288:SJwObyOkZOm0EF1UcIXbHOUPX+832slBa2w2kDEvm:V/OQOtEDUlrH1X+8Goc2koe
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Yuriy Tikhomirov
FileVersion: 2.1.280.0
CompanyName: Yuticom
ProductName: Reseller
ProductVersion: 2.1.280.0
FileDescription: Reseller
Translation: 0x0409 0x04b0

Win32/Kryptik.FDDH also known as:

Elasticmalicious (high confidence)
DrWebTrojan.PWS.Papras.2247
ALYacTrojan.GenericKD.3594158
CylanceUnsafe
ZillyaTrojan.Foreign.Win32.55056
SangforTrojan.Win32.Save.a
AlibabaRansom:Win32/Foreign.8ac07d1a
K7GWTrojan ( 0055dd191 )
K7AntiVirusTrojan ( 0055dd191 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.FDDH
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyTrojan-Ransom.Win32.Foreign.nhlr
BitDefenderTrojan.GenericKD.3594158
NANO-AntivirusTrojan.Win32.Papras.fchhhs
MicroWorld-eScanTrojan.GenericKD.3594158
TencentWin32.Trojan.Foreign.Akfk
Ad-AwareTrojan.GenericKD.3594158
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34670.Hu0@a4woaUai
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.hc
FireEyeGeneric.mg.7b94f8aa56c53074
EmsisoftTrojan.GenericKD.3594158 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Foreign.bmx
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1128648
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojanSpy:Win32/Ursnif.HP!bit
AegisLabTrojan.Win32.Foreign.j!c
GDataTrojan.GenericKD.3594158
TACHYONRansom/W32.Foreign.550400
McAfeeArtemis!7B94F8AA56C5
MAXmalware (ai score=100)
VBA32BScope.Trojan-Ransom.Foreign
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
RisingMalware.Heuristic!ET (C64:YzY0OqYhUsbVIn1F)
IkarusTrojan.Win32.Crypt
FortinetW32/Foreign.FDDH!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Foreign.HwoCEpsA

How to remove Win32/Kryptik.FDDH?

Win32/Kryptik.FDDH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment