Malware

Should I remove “Win32/Kryptik.HJZK”?

Malware Removal

The Win32/Kryptik.HJZK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HJZK virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Turkish
  • The binary likely contains encrypted or compressed data.
  • Attempts to create or modify system certificates
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HJZK?


File Info:

crc32: 91E1AA69
md5: b07cb26110e33ad1184b128654d5fbbd
name: B07CB26110E33AD1184B128654D5FBBD.mlw
sha1: afac22a22c40dd323c2cfdd1f86805ef359ca677
sha256: bb627b728d7df125afa6e14c186e4bf55a86e1660b881bce62ff8357229a8c59
sha512: 6899eda5492f90940efb8d0615c71804a18621dded143db94900ca3dce5c5f0e5c7f46f8e87cc462930d0a710615ec3c44c9254beed24ea263cb506ec15f8491
ssdeep: 12288:Tg3psDVbh7gAt6S1MmrkCkgd+IFkNhICsjoZpzU79bn144hkM:TgZ6h7gxc8gBXCsjEp69b19
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: calimatimodunadop.exe
FileVersions: 7.0.2.54
LegalCopyrights: Vsekda
ProductVersions: 7.0.21.45
Translation: 0x0129 0x04fe

Win32/Kryptik.HJZK also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.45913778
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaMalware:Win32/km_24aff.None
Cybereasonmalicious.22c40d
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HJZK
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderTrojan.GenericKD.36521085
MicroWorld-eScanTrojan.GenericKD.36521085
Ad-AwareTrojan.GenericKD.36521085
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34628.Hq0@aSO8G5jG
McAfee-GW-EditionBehavesLike.Win32.Trojan.hc
FireEyeGeneric.mg.b07cb26110e33ad1
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Glupteba.RW!MTB
AegisLabTrojan.Win32.Malicious.4!c
GDataTrojan.GenericKD.36521085
AhnLab-V3Trojan/Win.Stealer.R372757
Acronissuspicious
McAfeeRDN/RaccoonStealer
MAXmalware (ai score=87)
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002H0ACH21
RisingTrojan.Kryptik!8.8 (CLOUD)
IkarusTrojan-Spy.Win32.Raccoon
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HwoC91sA

How to remove Win32/Kryptik.HJZK?

Win32/Kryptik.HJZK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment