Malware

Should I remove “Win32/Kryptik.HJYL”?

Malware Removal

The Win32/Kryptik.HJYL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HJYL virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Turkish
  • The binary likely contains encrypted or compressed data.
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HJYL?


File Info:

crc32: 6021360A
md5: 2e947f5ead2f5d58124c9923e1e2849c
name: 2E947F5EAD2F5D58124C9923E1E2849C.mlw
sha1: 711f35a83681fd73b23fd2f2193fa08ad953a546
sha256: 6296905cf4a331aa9a278c3df71c8e6cb3c1e60b48402696264aac0f4d0df659
sha512: 4003a73174e49dcebadaab0b700ab19e3b6f19131626bf1f9f420a843dca6782cb04c6c51a956bb32de32d43a797e305cd00a330bd7eb80f3c9ce068714d6b23
ssdeep: 6144:9mO9ueehDC7PkPOhbJT06esz6q0s5hxe1JDH5GbhjyVRcUQ6+Og0b:9d9+hDkPkPOJT0DsVMPDH54kR9+Ov
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: calimatimodunador.exe
FileVersions: 7.0.2.54
LegalCopyrights: Vsekdar
ProductVersions: 7.0.21.45
Translation: 0x0129 0x04f4

Win32/Kryptik.HJYL also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Steam.19038
CynetMalicious (score: 100)
ALYacSpyware.Infostealer.Azorult
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/ArkeiStealer.446cd737
K7GWRiskware ( 0040eff71 )
CyrenW32/Kryptik.DPT.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HJYL
ZonerTrojan.Win32.106234
APEXMalicious
AvastWin32:BotX-gen [Trj]
ClamAVWin.Malware.Bulz-9842209-0
KasperskyTrojan-PSW.Win32.Coins.abdh
BitDefenderTrojan.GenericKD.36508306
ViRobotTrojan.Win32.Z.Coins.331776
MicroWorld-eScanTrojan.GenericKD.36508306
TencentWin32.Trojan-qqpass.Qqrob.Hupw
Ad-AwareTrojan.GenericKD.36508306
SophosMal/Generic-S
ComodoMalware@#3536npujcu4tc
BitDefenderThetaGen:NN.ZexaF.34628.uq0@aOpffPcG
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojan.Win32.GLUPTEBA.THCAFBA
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
FireEyeGeneric.mg.2e947f5ead2f5d58
EmsisoftTrojan.Crypt (A)
WebrootW32.Trojan.Glupteba
KingsoftWin32.PSWTroj.Coins.ab.(kcloud)
MicrosoftTrojan:Win32/ArkeiStealer.RM!MTB
AegisLabTrojan.Multi.Generic.4!c
GDataWin32.Trojan.PSE.18AAYXX
AhnLab-V3Trojan/Win32.GenericKDZ.R372613
Acronissuspicious
McAfeePacked-GDJ!2E947F5EAD2F
VBA32Trojan.Glupteba
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.GLUPTEBA.THCAFBA
RisingTrojan.Kryptik!8.8 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:BotX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HwoC604A

How to remove Win32/Kryptik.HJYL?

Win32/Kryptik.HJYL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment