Malware

How to remove “Win32/Kryptik.HKYJ”?

Malware Removal

The Win32/Kryptik.HKYJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HKYJ virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Kryptik.HKYJ?


File Info:

name: 9160E706EAAD1102CC80.mlw
path: /opt/CAPEv2/storage/binaries/ad3b8dd31f910a3bbe91c2ceea5dfd3ff59fa5fcaf7c6b0df56800a0abc8aa3e
crc32: FB1EC916
md5: 9160e706eaad1102cc80a125b1c07590
sha1: 9a8a405ca49e1edd02b1ebd736f417f9280c2182
sha256: ad3b8dd31f910a3bbe91c2ceea5dfd3ff59fa5fcaf7c6b0df56800a0abc8aa3e
sha512: 1b85d57e65dd233fefb812b1cb7d0ccb9d24e855100b59421438fe14e35d8576d127ca7a311fa89672322e2900bdc24d3c73ff1a475322c0a8cf86611e9398ad
ssdeep: 49152:WzI/yGCzSXg319sdNTIlvIIj9pO8ASAS69/G7vMClBvpnVQc:nKGqS6OMwIBAomg7MClBvLN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D9C501836604B651DCD11A3CAC33C86347E26F21954F86EE660436CA7E3ADCBF91E587
sha3_384: b4c26cfa32690494a23a22ccf3c67a20638974b99d600e4942c30887a267715f18f6455c8ba2f81647a2c226fec1c174
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-11-09 13:42:05

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Regionalizr
FileVersion: 1.8.0.0
InternalName: Regionalizr.exe
LegalCopyright: Copyright © 2017
LegalTrademarks:
OriginalFilename: Regionalizr.exe
ProductName: Regionalizr
ProductVersion: 1.8.0.0
Assembly Version: 1.8.0.0

Win32/Kryptik.HKYJ also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.47629954
FireEyeTrojan.GenericKD.47629954
McAfeeArtemis!9160E706EAAD
CylanceUnsafe
SangforRiskware.Win32.Wacapew.C
AlibabaTrojan:Win32/Kryptik.4f25e9f2
K7GWTrojan ( 0057cb1d1 )
K7AntiVirusTrojan ( 0057cb1d1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HKYJ
TrendMicro-HouseCallTROJ_GEN.R002H09LE21
BitDefenderTrojan.GenericKD.47629954
AvastWin32:Trojan-gen
Ad-AwareTrojan.GenericKD.47629954
EmsisoftTrojan.GenericKD.47629954 (B)
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
GDataTrojan.GenericKD.47629954
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.47629954
MAXmalware (ai score=83)
MalwarebytesMachineLearning/Anomalous.97%
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HKYJ!tr
AVGWin32:Trojan-gen

How to remove Win32/Kryptik.HKYJ?

Win32/Kryptik.HKYJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment