Malware

Win32/Kryptik.HKVT removal

Malware Removal

The Win32/Kryptik.HKVT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HKVT virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.HKVT?


File Info:

crc32: FCDA93E1
md5: 44213933c99695d7eedacd2a4f5b2c33
name: 44213933C99695D7EEDACD2A4F5B2C33.mlw
sha1: 59b9fd42baa7705336e297aa3f96525f8efe99b9
sha256: 2bfe46ac7a25aa487f6efe651f6bbcf85ac113ea7a4a8fa2563d441e2c98a768
sha512: 6c7752d6d64b85c53f250857d6ad544916399dc6d611e0ba04c91972c84e5e927eead8f7ce9d31478789991410111f7fb0cef1bc33969cbabc85e5af2406468f
ssdeep: 3072:5ar6Ys6p54kfdo+APr0aYSbeO6aal8jeytFQTOpp2J:js4p+ADxnSO6D2cOp
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2018
InternalName: x2otfb
FileVersion: 7.2.5422.00
Full Version: 7.2.5_000-b00
CompanyName: Oracle Corporation
ProductName: Xhot(BM) Ltloehey YO 8
ProductVersion: 7.2.5422.00
FileDescription: Java(TM) Platform SE binary
OriginalFilename: x2otfb.dll
Translation: 0x0000 0x04b0

Win32/Kryptik.HKVT also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
DrWebTrojan.Dridex.776
CynetMalicious (score: 100)
ALYacTrojan.GenericKDZ.75180
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Dridex.e1c4f452
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Kryptik.ECG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HKVT
APEXMalicious
AvastWin32:Malware-gen
KasperskyUDS:Trojan.Multi.GenericML.xnet
BitDefenderTrojan.GenericKDZ.75180
MicroWorld-eScanTrojan.GenericKDZ.75180
Ad-AwareTrojan.GenericKDZ.75180
ComodoMalware@#1wxee2gfgqpng
BitDefenderThetaGen:NN.ZedlaF.34690.ku8@aaYR3mb
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Drixed.cc
FireEyeGeneric.mg.44213933c99695d7
EmsisoftTrojan.GenericKDZ.75180 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Agent.ierln
MicrosoftTrojan:Win32/Dridex.PB!MTB
AegisLabTrojan.Win32.Convagent.4!c
GDataTrojan.GenericKDZ.75180
AhnLab-V3Trojan/Win.Dridex.R419934
Acronissuspicious
McAfeeArtemis!44213933C996
MAXmalware (ai score=99)
MalwarebytesTrojan.Dridex
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002H0CED21
RisingTrojan.Convagent!8.12323 (CLOUD)
IkarusTrojan-Banker.Dridex
FortinetW32/Agent.0CBC!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Kryptik.HKVT?

Win32/Kryptik.HKVT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment