Malware

Win32/Kryptik.HMNN information

Malware Removal

The Win32/Kryptik.HMNN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HMNN virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Saami
  • The binary likely contains encrypted or compressed data.
  • Detects Sandboxie through the presence of a library
  • Detects Avast Antivirus through the presence of a library
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine Win32/Kryptik.HMNN?


File Info:

crc32: 8AE908BC
md5: f98ad3622349ab6eeb11ad21125a6442
name: F98AD3622349AB6EEB11AD21125A6442.mlw
sha1: cfd8711970ba85ab9cab114eca3009ac7e92553b
sha256: 5930c76251de97d1e6e9ac0c9349e8b6ceed1a35b9b71cc86892d62285c77460
sha512: 6046c3774fab3c115f9f72ad825e905b3c7c70976005bea4e27205332d926b2d497b076458fcb123df4a2894000293492774488207f94529ea7f8fcc84c9c661
ssdeep: 6144:kgZQZ4qbU0Uha76Yp7rMgFhLoHVn+KQZqO:DZWbU0UhamIMgPpNZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x1209 0x052d

Win32/Kryptik.HMNN also known as:

K7AntiVirusTrojan ( 005828b41 )
LionicTrojan.Win32.Agent.4!c
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader43.22779
ClamAVWin.Malware.Raccoon-9894356-1
CAT-QuickHealRansom.Stop.Z5
ALYacTrojan.GenericKD.46996501
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.46996501
K7GWTrojan ( 005828b41 )
Cybereasonmalicious.970ba8
CyrenW32/Kryptik.FHP.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMNN
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.Win32.Stop.gen
AlibabaRansom:Win32/StopCrypt.c8e72a3d
ViRobotTrojan.Win32.Z.Ransomx.248832
MicroWorld-eScanTrojan.GenericKD.46996501
Ad-AwareTrojan.GenericKD.46996501
BitDefenderThetaGen:NN.ZexaF.34170.puW@aOqaAIkO
FireEyeGeneric.mg.f98ad3622349ab6e
EmsisoftTrojan.GenericKD.46996501 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.Agent.gphlm
eGambitUnsafe.AI_Score_95%
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
GDataWin32.Trojan.PSE.1XYQCIZ
AhnLab-V3Trojan/Win.Raccrypt.R442281
Acronissuspicious
McAfeePacked-GDT!F98AD3622349
MAXmalware (ai score=85)
VBA32Malware-Cryptor.Azorult.gen
MalwarebytesTrojan.MalPack.GS
TrendMicro-HouseCallRansom_StopCrypt.R03FC0DIN21
RisingTrojan.Kryptik!1.D975 (CLASSIC)
IkarusTrojan.Win32.Glupteba
FortinetW32/Kryptik.HMNW!tr
PandaTrj/Genetic.gen

How to remove Win32/Kryptik.HMNN?

Win32/Kryptik.HMNN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment