Malware

Win32/Kryptik.HLNM removal instruction

Malware Removal

The Win32/Kryptik.HLNM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HLNM virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.HLNM?


File Info:

crc32: CE5309B0
md5: 664fad27ce14cb42bd71430c99ed6515
name: 664FAD27CE14CB42BD71430C99ED6515.mlw
sha1: 01c897ed40f286f3430840caeb7c3eb78d51afe8
sha256: 4a81b0f4750921b3f55a84670e588f0f03fd263589dddfe85be8afe604f79f6b
sha512: af8f8f55bac34e3b87e162bb819dc3f5774fe3f81cc508a934c07ba1d8840ea081fedc3d8dbd3f20fb29dfbde5501c6aac60cf3763b5a7732e3dc3ba7ddd92f7
ssdeep: 6144:sOO1Y1xgf4O1JV+eFkGJE5MjfP2iSrjIT6giPvL6ZgGnX67j7PrHex:sOj6QOLV+wk7MlMI1WT05nXMfj
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translations: 0x38e5 0x035a

Win32/Kryptik.HLNM also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.d40f28
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLNM
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
KasperskyUDS:Trojan-Spy.Win32.Stealer.gen
SophosML/PE-A + Troj/Kryptik-TR
BitDefenderThetaGen:NN.ZexaF.34758.zuW@aa0KKMpI
TrendMicroRansom.Win32.STOP.SMYXBFX.hp
McAfee-GW-EditionBehavesLike.Win32.Emotet.gh
FireEyeGeneric.mg.664fad27ce14cb42
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.PSW.Racealer.cln
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Caynamer.A!ml
GridinsoftTrojan.Win32.Packed.lu!heur
Acronissuspicious
McAfeeGenericRXPB-LY!664FAD27CE14
RisingTrojan.Generic@ML.100 (RDML:qk+wHHSqevr1f9kwYmAXOA)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:RansomX-gen [Ransom]
Paloaltogeneric.ml

How to remove Win32/Kryptik.HLNM?

Win32/Kryptik.HLNM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment