Malware

Win32/Kryptik.HIHE information

Malware Removal

The Win32/Kryptik.HIHE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HIHE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HIHE?


File Info:

crc32: 46D388DC
md5: a542ae8c1041a60c7d447e0dc9221a61
name: A542AE8C1041A60C7D447E0DC9221A61.mlw
sha1: eaeda650496d8057065f6dc1741e78dc77f8600e
sha256: dfcb837d90759e041e3f90f8651d41961c8402196769d5eb61fdf938602533fb
sha512: 9ffcf57da0996a381bcc7a7d985468a525489877378f35d47ed16b8c085488031bb086dfa690bb2e1cbf42def59f300395fd91b185b09f6c716cca74504a700e
ssdeep: 98304:gA3aGqfrj55vy6CwgE0Y7SSUjoYfk7Ot/UiDN99QxiRJ+mUbkJLraNs/4dk8flr:5OjpCtv3RHOw8in+iRM9MLx4E9De2Kb
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: Copyright (C) 2019, matrix
InternalName: reboot.exe
FileVersion: 1.0.5.4
ProductVersion: 1.7.6
Translation: 0x0409 0x04e4

Win32/Kryptik.HIHE also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35742038
FireEyeGeneric.mg.a542ae8c1041a60c
ALYacTrojan.GenericKD.35742038
MalwarebytesTrojan.MalPack.GS
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.35742038
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.0496d8
BitDefenderThetaGen:NN.ZexaF.34700.@pKfaqPtmej
CyrenW32/Trojan.SZEK-7793
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:DropperX-gen [Drp]
ClamAVWin.Malware.Generic-9811131-0
KasperskyTrojan.Win32.AntiAV.czds
AlibabaTrojan:Win32/AntiAV.a2d45209
ViRobotTrojan.Win32.Z.Kryptik.4420608
Ad-AwareTrojan.GenericKD.35742038
SophosMal/Generic-S
ComodoMalware@#cq5bf38ei844
DrWebTrojan.Siggen11.55689
McAfee-GW-EditionBehavesLike.Win32.Trojan.rc
EmsisoftTrojan.Crypt (A)
IkarusTrojan.Win32.Crypt
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Coroxy.MR!MTB
GridinsoftTrojan.Win32.Kryptik.oa
ArcabitTrojan.Generic.D2216156
ZoneAlarmTrojan.Win32.AntiAV.czds
GDataTrojan.GenericKD.35742038
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R358467
Acronissuspicious
McAfeeGenericRXAA-AA!A542AE8C1041
MAXmalware (ai score=87)
VBA32BScope.Exploit.Shellcode
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HIHE
RisingTrojan.Ransom.GlobeImposter!1.AF70 (TFE:5:bYXJg1YG3DR)
YandexTrojan.GenAsa!A3rOJaxYS2w
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_90%
FortinetW32/Kryptik.HIFA!tr
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.Dropper.028

How to remove Win32/Kryptik.HIHE?

Win32/Kryptik.HIHE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment