Malware

Win32/Kryptik.HLTC removal

Malware Removal

The Win32/Kryptik.HLTC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HLTC virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (4 unique times)
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Serbian
  • The binary likely contains encrypted or compressed data.
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz
telete.in
apps.identrust.com

How to determine Win32/Kryptik.HLTC?


File Info:

crc32: FC2BC3CF
md5: 1e249d1ade1a739b6cec129a3c23be53
name: 1E249D1ADE1A739B6CEC129A3C23BE53.mlw
sha1: 4b88938106a27e1c3545abb155e1d6710ffcc982
sha256: 7c255bf677250d67574ee5286b8896b5c51442bc33dcb88e85743db0d4e39729
sha512: e9ff064af5cae5f6eba1cd7032a5e36095cb9f7e8779e0732964499acf4923dcd2de0ab7c3ed4f81901668b5bc8924015c70456bb1b5800d4f4b7edc1e51f75d
ssdeep: 12288:wEKec2ENMZofgvx4BWEkI0V0NBKK6I2k5:wEKe2N0ofV3k1V0DKKDX5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: voygcuadage.exe
FileVersion: 1.7.39.28
Copyright: Copyrighz (C) 2020, wodkagudy
ProductVersions: 1.16.46
Translation: 0x0273 0x011e

Win32/Kryptik.HLTC also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005690671 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.Agent.FKKY
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005690671 )
Cybereasonmalicious.106a27
CyrenW32/Kryptik.EQG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HLTC
APEXMalicious
AvastWin32:BotX-gen [Trj]
ClamAVWin.Malware.Generic-9879225-0
KasperskyHEUR:Trojan-PSW.Win32.Racealer.gen
BitDefenderTrojan.Agent.FKKY
MicroWorld-eScanTrojan.Agent.FKKY
Ad-AwareTrojan.Agent.FKKY
SophosML/PE-A
McAfee-GW-EditionBehavesLike.Win32.Ransomware.gc
FireEyeGeneric.mg.1e249d1ade1a739b
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Bingoml.amr
eGambitUnsafe.AI_Score_83%
MicrosoftRansom:Win32/StopCrypt.MYK!MTB
GridinsoftRansom.Win32.STOP.ko!se44539
ArcabitTrojan.Agent.FKKY
GDataTrojan.Agent.FKKY
AhnLab-V3CoinMiner/Win.Glupteba.R432069
McAfeePacked-GDT!1E249D1ADE1A
MAXmalware (ai score=87)
VBA32BScope.TrojanPSW.Racealer
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
RisingMalware.Obscure!1.A3BB (CLASSIC)
IkarusTrojan-Spy.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.ERHN!tr
AVGWin32:BotX-gen [Trj]
Qihoo-360Win32/TrojanSpy.Raccoon.HwoCvfsA

How to remove Win32/Kryptik.HLTC?

Win32/Kryptik.HLTC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment