Malware

How to remove “Win32/Kryptik.HHHM”?

Malware Removal

The Win32/Kryptik.HHHM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HHHM virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Kryptik.HHHM?


File Info:

crc32: 660DE7BA
md5: 2463ae6b43c0f981b767c836a1a03041
name: 2463AE6B43C0F981B767C836A1A03041.mlw
sha1: a184ba3b0df929e736e16d36cf05135ba117dca2
sha256: 1438d35ad5701b8545aadf03f0ed8d5c8574ddff4203de2c0427b33a76b8a477
sha512: 07fa1a6e006ccf251b26e9d83bf6429b8da672bda5fbc98917e65ee79d127143a0e7e1f1c3210a514c149300e773d5eb0cd3a46f89c995c2a9bba56428f88101
ssdeep: 12288:E/K5J1ydFjEguPEpDVPkJL1Zkc/P8cNOEOneD8N+6To:xf1saL1ZkELNOgD8NQ
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.HHHM also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.783282
FireEyeGeneric.mg.2463ae6b43c0f981
CAT-QuickHealTrojan.Multi
Qihoo-360HEUR/QVM20.1.3A86.Malware.Gen
ALYacGen:Variant.Razy.783282
CylanceUnsafe
Cybereasonmalicious.b0df92
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
BitDefenderGen:Variant.Razy.783282
DrWebTrojan.Inject4.4405
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
EmsisoftGen:Variant.Razy.783282 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Injects.ob
MAXmalware (ai score=84)
ArcabitTrojan.Razy.DBF3B2
MicrosoftTrojanSpy:Win32/Stelega.MR!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Reputation.C4222565
McAfeeGenericRXMO-AT!2463AE6B43C0
MalwarebytesBackdoor.Bot.Generic
ESET-NOD32a variant of Win32/Kryptik.HHHM
RisingTrojan.Kryptik!1.CE8B (CLASSIC)
FortinetW32/Kryptik.HHHM!tr
AVGWin32:PWSX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Malware.74800874.susgen

How to remove Win32/Kryptik.HHHM?

Win32/Kryptik.HHHM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment