Malware

Win32/Kryptik.HIKB removal guide

Malware Removal

The Win32/Kryptik.HIKB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HIKB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Norwegian (Nynorsk)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Kryptik.HIKB?


File Info:

crc32: 8B9DD871
md5: 28d3beee629a56fd19c7349287131201
name: 28D3BEEE629A56FD19C7349287131201.mlw
sha1: c66cdf403d2ca7e75373c886a8f83c86a407d9f3
sha256: 665520e6e8d8c395c63ce26fb0b3fa885411ca74199bef34fa27966694aff5e5
sha512: 090391712bb513aba3510b36648a7aa55eb64da6327615cc1706de86eac876175b41ee93cb99659f3f98346db586a4de9ca396276e2f6ebe7d729e5cfa7b2755
ssdeep: 98304:tanY9ca+KchrznpQLvgIb7DE1FyNKWKgas9OuI1fzdjG+9bhgOkkkUkTAomlbnt:tanYGaCrznaPDawISehWOVlbuKRfif
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalName: triwilbifog.acs
FileVersion: 6.26.361
Copyright: Copyrighz (C) 2020, vodkafug
ProductVersion: 1.0.2
TranslationUsa: 0x0273 0x04d3

Win32/Kryptik.HIKB also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45135048
FireEyeGeneric.mg.28d3beee629a56fd
CAT-QuickHealTrojan.Multi
Qihoo-360Win32/Trojan.396
ALYacTrojan.GenericKD.45135048
K7AntiVirusTrojan ( 005751ac1 )
BitDefenderTrojan.GenericKD.45135048
K7GWTrojan ( 005751ac1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Kryptik.CUR.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.Win32.Eb.bgn
AlibabaTrojan:Win32/Kryptik.88ab8303
ViRobotTrojan.Win32.Z.Kryptik.4424192.B
TencentWin32.Trojan.Eb.Htwd
Ad-AwareTrojan.GenericKD.45135048
SophosMal/Generic-S
ComodoMalware@#2r03sxgvcricf
F-SecureTrojan.TR/AD.GoCloudnet.udtvk
DrWebTrojan.Siggen11.56334
McAfee-GW-EditionBehavesLike.Win32.Trojan.rc
EmsisoftTrojan.GenericKD.45135048 (B)
IkarusTrojan.Win32.Krypt
WebrootW32.Trojan.Gen
AviraTR/AD.GoCloudnet.udtvk
MicrosoftTrojan:Win32/Glupteba.NT!MTB
GridinsoftTrojan.Win32.Kryptik.oa
ArcabitTrojan.Generic.D2B0B4C8
ZoneAlarmTrojan.Win32.Eb.bgn
GDataTrojan.GenericKD.45135048
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4269521
Acronissuspicious
McAfeeArtemis!28D3BEEE629A
MAXmalware (ai score=84)
VBA32Trojan.Glupteba
MalwarebytesTrojan.MalPack.UPX
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Kryptik.HIKB
RisingTrojan.Kryptik!1.CFEE (CLASSIC)
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HIFA!tr
BitDefenderThetaGen:NN.ZexaF.34700.@pKfauGsTzlG
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.03d2ca
AvastWin32:PWSX-gen [Trj]

How to remove Win32/Kryptik.HIKB?

Win32/Kryptik.HIKB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment