Malware

Win32/Kryptik.HHPI malicious file

Malware Removal

The Win32/Kryptik.HHPI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HHPI virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.HHPI?


File Info:

crc32: 4D9AB230
md5: 933a6917e05e16398d30a2dbe2989234
name: 933A6917E05E16398D30A2DBE2989234.mlw
sha1: 88c730277f77560bdff4836fb689f24a7ad81b5e
sha256: 7ab132d4889dabc0385ba4dd9ca727ccbc241791f851da7ab1afb09858fe8634
sha512: f4ea0651ee49683414d1170bc17b02af5878632cb9f48473c0902a6a8f3640aea8c517ee268fe7960ebe4e624e902db458927b1f5ee398530e84ed1b0db09e62
ssdeep: 6144:ST0hzdkc9ODnMtV2tqjyMAJoFRAO3oyyv2a72se6Yq5Y3fxcuJkjW3ySER4s0AV6:G8zdBODQZAJqfa72P6YoMjkcb24fL86
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.HHPI also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.44559010
FireEyeGeneric.mg.933a6917e05e1639
CAT-QuickHealTrojanspy.Noon
ALYacTrojan.GenericKD.44559010
CylanceUnsafe
SangforMalware
K7AntiVirusTrojan ( 005736471 )
BitDefenderTrojan.GenericKD.44559010
K7GWTrojan ( 005736471 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Trojan.FYEO-0864
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-Spy.Win32.Noon.gen
AlibabaTrojanSpy:Win32/Kryptik.2074816e
ViRobotTrojan.Win32.Z.Woreflint.479232
TencentWin32.Trojan.Inject.Auto
Ad-AwareTrojan.GenericKD.44559010
SophosMal/Generic-S
F-SecureTrojan.TR/AD.Swotter.yxydd
DrWebTrojan.Siggen9.48175
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
EmsisoftTrojan.GenericKD.44559010 (B)
IkarusTrojan.Win32.Krypt
JiangminAdWare.ConvertAd.aehd
WebrootW32.Trojan.TR.AD.Swotter.yxydd
AviraTR/AD.Swotter.yxydd
MAXmalware (ai score=85)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AA7A
GridinsoftTrojan.Win32.Kryptik.oa
ArcabitTrojan.Generic.D2A7EAA2
ZoneAlarmHEUR:Trojan-Spy.Win32.Noon.gen
GDataTrojan.GenericKD.44559010
CynetMalicious (score: 100)
McAfeeArtemis!933A6917E05E
VBA32BScope.Trojan.Woreflint
MalwarebytesTrojan.MalPack.RND.Generic
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Kryptik.HHPI
TrendMicro-HouseCallTrojan.Win32.NOON.USMANKJ20
RisingTrojan.Kryptik!8.8 (TFE:5:jUTe8aI9qfM)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HFKF!tr
BitDefenderThetaGen:NN.ZexaF.34634.DCZ@aK8SbQei
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Spy.9dd

How to remove Win32/Kryptik.HHPI?

Win32/Kryptik.HHPI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment