Malware

Win32/Kryptik.HGKQ removal tips

Malware Removal

The Win32/Kryptik.HGKQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HGKQ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HGKQ?


File Info:

crc32: E15B9CD4
md5: 04d869099c1c1c92d5fd7f500d17a235
name: 04D869099C1C1C92D5FD7F500D17A235.mlw
sha1: 07d74342a8f7224c0e6126dd7f7346cb5ca5d745
sha256: 7e278fa06d928ed9fc553a56b0f94f42690cb034e39477bbd4254c579e942ac9
sha512: bc901c2685d08fa7a7741df8116a75644ca2a0756331f4932e6028750153a0b76eb9a161026502fc5088f0e8645d4c6e79ac9339f540bd661680f90d19e8a4f6
ssdeep: 6144:1fwD/eHK1rGTAOkuou8X4pkn/VlNenHfGphYsGGNzKL2:1fwDz1+PovWk/VlsOd+L2
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.HGKQ also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005338861 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Cloxer.A06
ALYacTrojan.GenericKDZ.44416
CylanceUnsafe
ZillyaTrojan.GandCrypt.Win32.394
SangforWin.Packed.Gandcrab-6520432-4
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005338861 )
Cybereasonmalicious.99c1c1
CyrenW32/S-468a6143!Eldorado
ESET-NOD32a variant of Win32/Kryptik.HGKQ
APEXMalicious
AvastFileRepMalware
ClamAVWin.Packed.Gandcrab-6520432-4
KasperskyHEUR:Trojan-Ransom.Win32.GandCrypt.gen
BitDefenderTrojan.GenericKDZ.44416
NANO-AntivirusTrojan.Win32.GandCrypt.fecwhd
ViRobotTrojan.Win32.GandCrab.Gen.A
SUPERAntiSpywareRansom.GandCrab/Variant
MicroWorld-eScanTrojan.GenericKDZ.44416
TencentMalware.Win32.Gencirc.10b3af7c
Ad-AwareTrojan.GenericKDZ.44416
SophosML/PE-A + Mal/Agent-AUL
ComodoTrojWare.Win32.PSW.Coins.GH@7ohrdk
BitDefenderThetaGen:NN.ZexaF.34628.uyX@aSTSGrn
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_HPGen-37b
McAfee-GW-EditionBehavesLike.Win32.Generic.fc
FireEyeGeneric.mg.04d869099c1c1c92
EmsisoftTrojan.GenericKDZ.44416 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.GandCrypt.ge
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:Win32/GandCrab.BG
ArcabitTrojan.Generic.DAD80
AegisLabTrojan.Win32.Agent.trtj
GDataWin32.Trojan.Kryptik.QP
TACHYONRansom/W32.GandCrypt.329225
AhnLab-V3Win-Trojan/Gandcrab.Exp
Acronissuspicious
McAfeePacked-FGQ!04D869099C1C
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
MalwarebytesGandcrab.Ransom.Encrypt.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallMal_HPGen-37b
RisingRansom.GandCrab!8.F355 (TFE:dGZlOgWnZTmDJypJXg)
YandexTrojan.GenAsa!24RdAGIvvfo
IkarusTrojan-Ransom.GandCrab
MaxSecureRansomeware.GandCrypt.Gen
FortinetW32/GenKryptik.CNAR!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Ransom.9d6

How to remove Win32/Kryptik.HGKQ?

Win32/Kryptik.HGKQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment