Malware

About “Win32/Kryptik.HNBY” infection

Malware Removal

The Win32/Kryptik.HNBY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HNBY virus can do?

  • Unconventionial language used in binary resources: Divehi
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HNBY?


File Info:

crc32: F1233A54
md5: 4d8e04bfe184fe46f0708325d67cd658
name: 4D8E04BFE184FE46F0708325D67CD658.mlw
sha1: 02842dff534e01b5c2f3fa48061336b472af1297
sha256: f828e28fa5b43d1c755616a9e1ccc6364380d02d78ebdfa9e7ddc95eaabf34c6
sha512: 2d2fa71c27ee88103fc47f12b8675e6b43a70e0fee41d847e84d8772ee337b3bc5fd2a8905fc3ebbfa4283fdfac711f218d58ad817fde64bc9cbd0818e58d3d8
ssdeep: 12288:fh+42tASRfU8QvBGY+pdiCNaf6I0+9L5IlxEEqYekcDWMJlXvjZmMu/S:fotASFtQsYIiCwZ0NE4CT5u6
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: nomgpiarica.iwa
ProductVersion: 91.40.21.88
Copyright: Copyrighz (C) 2021, fudkagat
Translation: 0x0196 0x03fd

Win32/Kryptik.HNBY also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00564bda1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.33991
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Stop
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 00564bda1 )
Cybereasonmalicious.f534e0
CyrenW32/Kryptik.FOQ.gen!Eldorado
SymantecPacked.Generic.528
ESET-NOD32a variant of Win32/Kryptik.HNBY
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Trojan.Generic-9904327-0
KasperskyHEUR:Trojan-Spy.Win32.Stealer.gen
BitDefenderTrojan.GenericKDZ.79284
MicroWorld-eScanTrojan.GenericKDZ.79284
Ad-AwareTrojan.GenericKDZ.79284
BitDefenderThetaGen:NN.ZexaF.34236.Tu0@a4EcPOiG
TrendMicroRansom_StopCrypt.R067C0DK221
FireEyeGeneric.mg.4d8e04bfe184fe46
EmsisoftTrojan.GenericKDZ.79284 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Agent.dqip
eGambitUnsafe.AI_Score_68%
MicrosoftRansom:Win32/StopCrypt.MOK!MTB
GDataWin32.Trojan.PSE.E3ZKL2
AhnLab-V3Ransomware/Win.Stop.R447456
Acronissuspicious
McAfeeRDN/Generic.grp
MAXmalware (ai score=80)
VBA32BScope.TrojanSpy.Stealer
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
RisingMalware.Heuristic!ET#96% (RDMK:cmRtazrfANiGnRvtAYABRduy6GLa)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FOQ!tr
AVGWin32:MalwareX-gen [Trj]

How to remove Win32/Kryptik.HNBY?

Win32/Kryptik.HNBY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment