Malware

Win32/Kryptik.HAYM removal instruction

Malware Removal

The Win32/Kryptik.HAYM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HAYM virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HAYM?


File Info:

crc32: 71F43886
md5: 2e7d3057d03705128c1d756a1486048a
name: 2E7D3057D03705128C1D756A1486048A.mlw
sha1: 25ca183adeafa817d8cd85bde96af461ee32d389
sha256: f1d6695c0f4c32fadc6ae47c9b6d2b5c1b4e9f575539a67a1b1064e6f7a236c3
sha512: a5d537b4432755a7b0c87146cedd0322b1083b9b4691bc1198b6c834b787a89a721db6abe19b0875b7c4924b28ad13ef19332eb4d41bd3e02296b7359b0895c1
ssdeep: 49152:jtn1wlXf1LRz5inkJU6fTNDVvQDuXmCXx5F3qTQg+X5PvhyX6M:jt2bZ5inYfTNDVvQDlYl62pPvY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) EZB Systems, Inc.
InternalName: UltraISO
FileVersion: 9.7.5.3716
CompanyName: EZB Systems, Inc.
LegalTrademarks: EZB(R)
Comments: http://www.ezbsystems.com
ProductName: UltraISO Premium
ProductVersion: V9.75
FileDescription: UltraISO Premium
OriginalFilename: ultraiso.exe
Translation: 0x0409 0x04e4

Win32/Kryptik.HAYM also known as:

K7AntiVirusTrojan ( 00560e891 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Zadved.1661
CynetMalicious (score: 99)
CAT-QuickHealTrojan.WacatacPMF.S17016534
ALYacTrojan.GenericKDZ.71452
CylanceUnsafe
SangforTrojan.Win32.Tiggre.rfn
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojan:Win32/Kryptik.9b371c9e
K7GWTrojan ( 00560e891 )
Cybereasonmalicious.7d0370
CyrenW32/Kryptik.CKH.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HAYM
APEXMalicious
AvastWin32:AdwareX-gen [Adw]
ClamAVWin.Packed.Adrozek-9811562-0
KasperskyHEUR:Trojan.Win32.Ekstak.gen
BitDefenderTrojan.GenericKDZ.71452
NANO-AntivirusTrojan.Win32.Kryptik.icerif
MicroWorld-eScanTrojan.GenericKDZ.71452
Ad-AwareTrojan.GenericKDZ.71452
SophosMal/Generic-R + Troj/AutoG-KG
ComodoMalware@#ys3ihpsqpehi
BitDefenderThetaGen:NN.ZexaCO.34266.YB0@ayq!26oj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Dropper.wc
FireEyeGeneric.mg.2e7d3057d0370512
EmsisoftTrojan.GenericKDZ.71452 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.Agent.tylod
Antiy-AVLTrojan/Generic.ASMalwS.310620F
MicrosoftTrojan:Win32/Tnega!ml
GDataTrojan.GenericKDZ.71452
AhnLab-V3Trojan/Win32.Crypt.R355859
McAfeeGenericRXMR-GV!2E7D3057D037
MAXmalware (ai score=84)
VBA32BScope.Trojan.Wacatac
MalwarebytesAdware.DownloadAssistant
PandaTrj/CI.A
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.Kryptik!zBQuGcNooms
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GZFR!tr
AVGWin32:AdwareX-gen [Adw]
Paloaltogeneric.ml

How to remove Win32/Kryptik.HAYM?

Win32/Kryptik.HAYM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment