Malware

How to remove “Win32/Kryptik.HKYI”?

Malware Removal

The Win32/Kryptik.HKYI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HKYI virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Kryptik.HKYI?


File Info:

crc32: 5946A4D3
md5: 02e71871f048aaa34aca3a287177505e
name: 02E71871F048AAA34ACA3A287177505E.mlw
sha1: 8ac4ae79ffa0a6a9b11a46200dbf62c974812046
sha256: 203f34cede0e215ae0be083464e358957e907b43637c8ca7762a1ad4b2526e58
sha512: 31ce2e0e0e58fa2652a1e4b99e5d50a5e64570956e2d831f6a7b049e50cde47e9da025afd96e99c88cdcc74da94d2798e13cd2b68645cf284a12d57153a6db1c
ssdeep: 12288:ZmhMwfA6jgNJbhN8tyqV5OZ/Y7OUmXSANZ:yfA4uhN8tyqVC/MmXSA
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2005
InternalName: LolderBrowse
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: Xnwendung FolderBrowse
ProductVersion: 1, 0, 0, 1
FileDescription: DFK-Anwendung FolderBrowse
OriginalFilename: XolderBrowse.EXE
Translation: 0x0407 0x04b0

Win32/Kryptik.HKYI also known as:

BkavW32.AIDetect.malware2
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.36925234
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3175890
SangforTrojan.Win32.Trickpak.gen
AlibabaTrojan:Win32/Trickbot.2f8596ea
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
CyrenW32/Kryptik.EDE.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Kryptik.HKYI
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Trickpak.gen
BitDefenderTrojan.GenericKD.36925234
MicroWorld-eScanTrojan.GenericKD.36925234
Ad-AwareTrojan.GenericKD.36925234
SophosML/PE-A
ComodoMalware@#1p3o5i85hfx4h
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionRDN/Generic.dx
FireEyeGeneric.mg.02e71871f048aaa3
EmsisoftTrojan.GenericKD.36925234 (B)
AviraTR/AD.Emotet.hwvnn
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Trickbot.GKM!MTB
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Trickpak.gen
GDataTrojan.GenericKD.36925234
AhnLab-V3Malware/Win.Generic.R421573
McAfeeArtemis!02E71871F048
MAXmalware (ai score=86)
VBA32Trojan.Sabsik.FL
MalwarebytesTrojan.Agent
PandaTrj/GdSda.A
RisingTrojan.Kryptik!8.8 (CLOUD)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.HKYI!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Kryptik.HKYI?

Win32/Kryptik.HKYI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment