Malware

Win32/Kryptik.HBXQ information

Malware Removal

The Win32/Kryptik.HBXQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HBXQ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Attempts to connect to a dead IP:Port (5 unique times)
  • The binary likely contains encrypted or compressed data.
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HBXQ?


File Info:

crc32: 169208C5
md5: 317552edcf233e74511c8ade765f0162
name: vps.exe
sha1: cace68da9054b107d269fa16acc49ce8e839d779
sha256: 8b98c0448f0a4a98bd249f23f878c45bcd73063cac109ed6b6e03fb63abeff3b
sha512: db9ffa3ae44b5d3ad4754e069af943bd0d50e4ef69e52e6fd8da2a2e9d6ec9af1a2064cc147ff932c14746318e0e35174e1869a3dbf8572bb7bc9abed3ebe4d0
ssdeep: 12288:Ubp8H8gsXIFGM8389RhUTHk1+cnXebZO:UbqFsXJ8DyHk1+cnXIo
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.HBXQ also known as:

BkavW32.AIDetectVM.malware2
McAfeeArtemis!317552EDCF23
SangforMalware
K7GWHacktool ( 700007861 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HBXQ
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
RisingTrojan.Kryptik!8.8 (CLOUD)
Endgamemalicious (high confidence)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.MultiPlug.hc
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.317552edcf233e74
SentinelOneDFI – Malicious PE
WebrootW32.Malware.gen
MicrosoftTrojan:Win32/Wacatac.D!ml
ZoneAlarmUDS:DangerousObject.Multi.Generic
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34100.JyW@ayYd2Jy
GDataWin32.Packed.Kryptik.73WQB2
Cybereasonmalicious.a9054b

How to remove Win32/Kryptik.HBXQ?

Win32/Kryptik.HBXQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment