Malware

Win32/Kryptik.HLDZ removal guide

Malware Removal

The Win32/Kryptik.HLDZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HLDZ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HLDZ?


File Info:

crc32: 8AB4768B
md5: 9fb8d26ff13e2ab05719119ac06ecc07
name: 9FB8D26FF13E2AB05719119AC06ECC07.mlw
sha1: dba5e17f8d4bb11e19ea548acce572946cda2040
sha256: a75c290ca3dd70d57c3f2805fb7c5668d95402c0cea95f62054a47084200ef24
sha512: ac7134b32ad0317da4eed460b5b5b37409d1cff2dfc62f85416120abe2e2753ed5c89ab5e7570303d7091bda7dfb578513741bcdd0b74cbd91c80350ced32397
ssdeep: 12288:Y43cTGrLptoCKEV76KDpMGPaISTcN9saAvgqW6mZuzuJPjX7R75:vz75tzST8AYq8
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Man electric Corporation. All rights reserved Secondreason
InternalName: Box silver
FileVersion: 4.4.6.846
CompanyName: Man electric Corporation
ProductName: Man electricxae Namexae
ProductVersion: 4.4.6.846
FileDescription: Man electric Name
OriginalFilename: Road.dll
Translation: 0x0409 0x04b0

Win32/Kryptik.HLDZ also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacSpyware.Ursnif
SangforTrojan.Win32.CryptInject.MSR
SymantecTrojan Horse
ESET-NOD32a variant of Win32/Kryptik.HLDZ
APEXMalicious
AvastWin32:BankerX-gen [Trj]
BitDefenderTrojan.GenericKD.46406677
MicroWorld-eScanTrojan.GenericKD.46406677
Ad-AwareTrojan.GenericKD.46406677
FireEyeGeneric.mg.9fb8d26ff13e2ab0
WebrootW32.Trojan.Gen
AviraTR/AD.UrsnifDropper.jyiew
eGambitUnsafe.AI_Score_84%
MicrosoftTrojan:Win32/CryptInject!MSR
GDataTrojan.GenericKD.46406677
McAfeeArtemis!9FB8D26FF13E
MAXmalware (ai score=84)
RisingTrojan.Generic@ML.100 (RDML:tHUmlB85LJV2+soYVxyG/A)
IkarusTrojan.Win32.Krypt
FortinetW32/GneKryptik.FGDG!tr
AVGWin32:BankerX-gen [Trj]
Paloaltogeneric.ml

How to remove Win32/Kryptik.HLDZ?

Win32/Kryptik.HLDZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment