Malware

Win32/Kryptik.HMYH information

Malware Removal

The Win32/Kryptik.HMYH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HMYH virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Spanish (Paraguay)
  • Enumerates services, possibly for anti-virtualization
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HMYH?


File Info:

crc32: F095140C
md5: 23a20bc6a1486507d63abfdc6c02843b
name: 23A20BC6A1486507D63ABFDC6C02843B.mlw
sha1: 3336f4bc0c23efea171074fceafac455fbdf4a39
sha256: 58ccabb039dd60a03a34bef26c8117c639f638bb0dabdf97b51988eecf4ab256
sha512: 762441b4013fb60ad7a9d4d5566263f9e861dbfc242900b23fa36ce9783b5bb2cae973761e02651498fa6cdc92f8a1615f3de9873940ed7cb4f592a942b0c631
ssdeep: 49152:ArA0NNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNNN:
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0152 0x0013

Win32/Kryptik.HMYH also known as:

K7AntiVirusRiskware ( 00584baa1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.25632
CynetMalicious (score: 100)
CAT-QuickHealRansom.Stop.Z5
ALYacTrojan.GenericKDZ.79051
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.3585240
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaMalware:Win32/km_24af8.None
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.c0c23e
BaiduWin32.Trojan.Kryptik.jm
CyrenW32/Kryptik.FMD.gen!Eldorado
SymantecPacked.Generic.620
ESET-NOD32a variant of Win32/Kryptik.HMYH
APEXMalicious
AvastWin32:BotX-gen [Trj]
ClamAVWin.Trojan.Generic-9902991-0
KasperskyHEUR:Trojan.Win32.Bingoml.gen
BitDefenderTrojan.GenericKDZ.79051
MicroWorld-eScanTrojan.GenericKDZ.79051
TencentMalware.Win32.Gencirc.10cf7978
Ad-AwareTrojan.GenericKDZ.79051
SophosML/PE-A + Troj/Krypt-DI
McAfee-GW-EditionPacked-GDT!23A20BC6A148
FireEyeGeneric.mg.23a20bc6a1486507
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Bingoml.cbw
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Generic.ASMalwS.34C2F1C
MicrosoftTrojan:Win32/Azorult.RF!MTB
ArcabitTrojan.Generic.D134CB
ZoneAlarmHEUR:Trojan.Win32.Bingoml.gen
GDataWin32.Trojan.BSE.WS9D4D
AhnLab-V3Packed/Win.GDT.R446021
Acronissuspicious
McAfeePacked-GDT!23A20BC6A148
MAXmalware (ai score=83)
VBA32BScope.TrojanSpy.Stealer
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
RisingMalware.Heuristic!ET#90% (RDMK:cmRtazpGb7/pdLDKkcZnpvW/YY8U)
YandexTrojan.Bingoml!hPqVDMPU8C4
IkarusTrojan.Win32
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HMYI!tr
AVGWin32:BotX-gen [Trj]

How to remove Win32/Kryptik.HMYH?

Win32/Kryptik.HMYH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment