Malware

How to remove “Win32/Kryptik.HMIJ”?

Malware Removal

The Win32/Kryptik.HMIJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HMIJ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.HMIJ?


File Info:

crc32: 4216306A
md5: 277d79c1e84c6214b214337c3e762550
name: 277D79C1E84C6214B214337C3E762550.mlw
sha1: dcb95fd4fd450218e294d445cf2523f214f45c40
sha256: 57e3cd7da0c35a9784246d862df065ad9367e50dd0e1cf7874ff854b72126340
sha512: 9ddea1862e2e2416bfca73b9b06edc6f02a44ca1be564549397e720590c7bea6b557e2bc58fe8fe425ae5e7911b30323e83da6d532f2bb906a8f03fab51ceda4
ssdeep: 98304:8Si1mMFfkTQv6Jk/2vIjBP6Yf0SCaLvk7g0hBCDnWDkP1c:ImMFf4Qq4pjBv0S48CBCDcktc
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
FileVersion:
CompanyName:
Comments: This installation was built with Inno Setup.
ProductName: Nulla
ProductVersion: 10.2.2.1
FileDescription: Nulla Setup
OriginalFileName:
Translation: 0x0000 0x04b0

Win32/Kryptik.HMIJ also known as:

K7AntiVirusTrojan ( 005810941 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.37454181
CylanceUnsafe
SangforTrojan.Win32.Pasnaino.ml
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaAdWare:Win32/AdLoad.6c96bb70
K7GWTrojan ( 005810941 )
CyrenW32/Agent.CJX.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Kryptik.HMIJ
AvastWin32:CrypterX-gen [Trj]
KasperskyTrojan-Downloader.Win32.Adload.spon
BitDefenderTrojan.GenericKD.37454181
NANO-AntivirusTrojan.Win32.Adload.jcatdl
MicroWorld-eScanTrojan.GenericKD.37454181
TencentWin32.Trojan-downloader.Adload.Hrfp
Ad-AwareTrojan.GenericKD.37454181
SophosMal/Generic-R
TrendMicroTROJ_GEN.R06CC0RHL21
McAfee-GW-EditionBehavesLike.Win32.Dropper.rc
FireEyeTrojan.GenericKD.37454181
EmsisoftTrojan.GenericKD.37454181 (B)
AviraHEUR/AGEN.1142027
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D23B8165
GDataWin32.Trojan.BSE.W4BXSV
McAfeeArtemis!277D79C1E84C
MAXmalware (ai score=80)
MalwarebytesAdware.DownloadAssistant
TrendMicro-HouseCallTROJ_GEN.R06CC0RHL21
YandexTrojan.DL.Adload!tspQuD2ExLA
IkarusTrojan.Win32.Crypt
FortinetRiskware/Adload
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Win32/Kryptik.HMIJ?

Win32/Kryptik.HMIJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment