Malware

Should I remove “Win32/Kryptik.HMSO”?

Malware Removal

The Win32/Kryptik.HMSO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HMSO virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

Related domains:

mas.to

How to determine Win32/Kryptik.HMSO?


File Info:

crc32: B3645DBA
md5: 6ea4170824b7282768324dbef4ed2c59
name: 6EA4170824B7282768324DBEF4ED2C59.mlw
sha1: f683a1eadbeefc4136c92c225b74052068590574
sha256: a9228e42fde014c8f92b6c0e3e98f23718f3c222107f9780d072fc29742d2988
sha512: a2f8124bf5bc5b990182f6d8668e73491e3216a02dd09671b2d6bd7a474d3fdb4eac3b8307764f1ad8f5ab914e9809f56c7e479930326a9b41309141965e0ec8
ssdeep: 12288:wbtsBRIpsV6GGS9cnWiZjeSSvQwWj+xuefm1lMjRiazxp6L:wewJWiZaSJwsB8mE0u36L
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: sajbmianozu.iya
ProductVersion: 2.4.59.42
Copyright: Copyrighz (C) 2021, fudkagat
Translation: 0x0127 0x007a

Win32/Kryptik.HMSO also known as:

Elasticmalicious (high confidence)
MalwarebytesTrojan.MalPack.GS
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Variant.Fragtor.28226
BitDefenderThetaGen:NN.ZexaF.34170.Sq0@aqGkBQlm
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HMSO
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Chapak.gen
MicroWorld-eScanGen:Variant.Fragtor.28226
Ad-AwareGen:Variant.Fragtor.28226
SophosML/PE-A
DrWebTrojan.PWS.Stealer.31055
McAfee-GW-EditionBehavesLike.Win32.Lockbit.bc
FireEyeGeneric.mg.6ea4170824b72827
EmsisoftGen:Variant.Fragtor.28226 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Troj.Undef.(kcloud)
GDataGen:Variant.Fragtor.28226
AhnLab-V3Ransomware/Win.StopCrypt.R443932
Acronissuspicious
McAfeeGenericRXQG-OZ!6EA4170824B7
MAXmalware (ai score=83)
RisingTrojan.Generic@ML.88 (RDML:mBTXVHeavlbZCLnHhDe2bQ)
IkarusTrojan-Banker.UrSnif
FortinetW32/Kryptik.HMSK!tr

How to remove Win32/Kryptik.HMSO?

Win32/Kryptik.HMSO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment