Malware

What is “Win32/Kryptik.HHSK”?

Malware Removal

The Win32/Kryptik.HHSK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HHSK virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HHSK?


File Info:

crc32: B1F54A0C
md5: 9fd1bc256860d6a18a9b1a294b66dfb3
name: 9FD1BC256860D6A18A9B1A294B66DFB3.mlw
sha1: e34c49a332c42a0c3afd0e2ff7d90311ac01aa3f
sha256: 1b145cd12882ab58ddb7bdb833e11f9e11b3eb9ce721d75cc6197f87ba4fd341
sha512: 1dfc7ae8b999c236d6304e5b5e7ff389c5a8af1f5045a97c00e342970b0083a07cd80f02f9527e9a229e8927b9a5b1a468b13d82635661bb550b29ed4380b925
ssdeep: 6144:GpHlgWOOHnlNSY2mptctqLLjfv/ABDvwrXgQ7B:GFlgAn52vq/jHEYrXgq
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Gun Wenthappy Wrote Corporation. All rights reserved
InternalName: Fat Stand
FileVersion: 8.8.5.173
CompanyName: Gun Wenthappy Wrote Corporation
ProductName: Gun Wenthappy Wrotexae Writeschoolxae
Special: Menclaim
FileDescription: Gun Wenthappy Wrote Writeschool
Page: NowSecond
OriginalFilename: Print.dll
ProductVersion: 8.8.5.173
Translation: 0x0409 0x04b0

Win32/Kryptik.HHSK also known as:

DrWebTrojan.IcedID.44
MicroWorld-eScanTrojan.GenericKD.44641726
Qihoo-360Generic/Trojan.c66
McAfeeArtemis!9FD1BC256860
CylanceUnsafe
AegisLabTrojan.Win32.Generic.4!c
SangforMalware
BitDefenderTrojan.GenericKD.44641726
K7GWTrojan ( 00573a231 )
K7AntiVirusTrojan ( 00573a231 )
ArcabitTrojan.Generic.D2A92DBE
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HHSK
TrendMicro-HouseCallTROJ_FRS.VSNTKP20
Paloaltogeneric.ml
AlibabaTrojan:Win32/GenKryptik.f94f9e9a
Ad-AwareTrojan.GenericKD.44641726
EmsisoftTrojan.GenericKD.44641726 (B)
F-SecureTrojan.TR/AD.PhotoDlder.DJ
TrendMicroTROJ_FRS.VSNTKP20
McAfee-GW-EditionArtemis!Trojan
FireEyeTrojan.GenericKD.44641726
SophosMal/Generic-S
AviraTR/AD.PhotoDlder.DJ
KingsoftWin32.Troj.Generic.a.(kcloud)
MicrosoftTrojan:Win32/IcedId.DP!MTB
GDataTrojan.GenericKD.44641726
CynetMalicious (score: 100)
ALYacTrojan.IcedID.gen
MAXmalware (ai score=88)
MalwarebytesTrojan.MalPack.RVRS.Generic
APEXMalicious
RisingTrojan.Generic@ML.90 (RDML:sDlsr5LAAGqw2/QFyQRUug)
IkarusTrojan-Banker.IcedID
eGambitUnsafe.AI_Score_67%
FortinetW32/GenKryptik.EXEW!tr
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]

How to remove Win32/Kryptik.HHSK?

Win32/Kryptik.HHSK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment