Malware

Win32/Kryptik.HAWC information

Malware Removal

The Win32/Kryptik.HAWC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HAWC virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
senlevispin.online
senvepinlevis.online
edgedl.me.gvt1.com

How to determine Win32/Kryptik.HAWC?


File Info:

crc32: 6E469BB1
md5: 0a66d87d14fa768d8457a9cfc09fd3d7
name: 0A66D87D14FA768D8457A9CFC09FD3D7.mlw
sha1: 212fbe5d70ec1498eccd365a9ad18f868c904fab
sha256: a6cc9b6fa4c59e950bbfc7685fe18db9ad8ff75c0079b8fe03abe81f970d3cbd
sha512: f1001448e6a7b0da7ab669cad00113a36f45b2f689a87d9edb9d5fb273d1c34a2cea71b65ec5db1deba0339ece0480bdcba2e6316f7ef5f7a7c40873eedbcf8c
ssdeep: 49152:iPVAxkXYA7RM/3vnY7hHyz3kWP5jGgTaiqyYXXSWQNr:nW8PYQD1Mi9ciWQNr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: NCH Software
InternalName: WavePad
FileVersion: 10.38+
CompanyName: NCH Software
ProductName: WavePad
ProductVersion: 10.38+
FileDescription: WavePad Sound Editor
OriginalFilename: WavePad.exe
Translation: 0x0c09 0x04b0

Win32/Kryptik.HAWC also known as:

BkavW32.AIDetectVM.malware1
K7AntiVirusTrojan ( 0056252b1 )
MicroWorld-eScanTrojan.GenericKD.33790045
ALYacTrojan.GenericKD.33790045
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.2016732
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojanDownloader:Win32/Kryptik.8a7d239c
K7GWTrojan ( 0056252b1 )
TrendMicroTROJ_GEN.R03BC0WE820
CyrenW32/Trojan.YSEU-1164
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HAWC
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
GDataTrojan.GenericKD.33790045
KasperskyTrojan-Downloader.Win32.Razy.aacp
BitDefenderTrojan.GenericKD.33790045
TencentWin32.Trojan-downloader.Razy.Gbu
Ad-AwareTrojan.GenericKD.33790045
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaCO.34122.GB0@a0fOzvli
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.AdwareIMonster.wc
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.0a66d87d14fa768d
EmsisoftTrojan.GenericKD.33790045 (B)
Endgamemalicious (high confidence)
Antiy-AVLTrojan[Downloader]/Win32.Razy
MicrosoftPUA:Win32/Vigua.A
ArcabitTrojan.Generic.D203985D
AegisLabTrojan.Win32.Buzus.kZ0o
ZoneAlarmTrojan-Downloader.Win32.Razy.aacp
AhnLab-V3PUP/Win32.ICLoader.C4087572
Acronissuspicious
MAXmalware (ai score=84)
MalwarebytesAdware.Agent.KHM.Generic
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R03BC0WE820
RisingTrojan.Kryptik!1.AA23 (CLOUD)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.HARA!tr
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Downloader.547

How to remove Win32/Kryptik.HAWC?

Win32/Kryptik.HAWC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment