Malware

Win32/Kryptik.HNJU removal

Malware Removal

The Win32/Kryptik.HNJU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HNJU virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial language used in binary resources: Spanish (Paraguay)
  • The binary likely contains encrypted or compressed data.
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Win32/Kryptik.HNJU?


File Info:

crc32: 74540A20
md5: 783be0bd21d8debef24d0fe4da42f81e
name: 783BE0BD21D8DEBEF24D0FE4DA42F81E.mlw
sha1: 5ba54a452ff7cc3c5c5c969d4b0d506050da7f5d
sha256: e8c62eac626a0356d11716ab70a88c07831545c817fc044918bdf8f6cccb2738
sha512: 273dd8d14364eb4d6da9f94b3bb1af7d134ef42320a66f2f62af045ab0fca83c3635efeb344150683001cda033179d171d79f05292ad52e53710147ef00a91ab
ssdeep: 49152:vekPpZwbJEDNN9fMBKSoXzhNVsoyEL/dRuavT2:vVPp2b6DLVMBK0FEDdRuUT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translations: 0x0022 0x023c

Win32/Kryptik.HNJU also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.31482
ALYacTrojan.GenericKD.38075808
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaRansom:Win32/StopCrypt.dba71487
K7GWRiskware ( 0040eff71 )
BaiduWin32.Trojan.Kryptik.jm
CyrenW32/Kryptik.FSC.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HNJU
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Strab.gen
BitDefenderTrojan.GenericKD.38075808
MicroWorld-eScanTrojan.GenericKD.38075808
Ad-AwareTrojan.GenericKD.38075808
SophosMal/Generic-S
TrendMicroRansom_StopCrypt.R002C0DKN21
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.783be0bd21d8debe
EmsisoftTrojan.Smokeloader (A)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.Agent.uxpst
eGambitUnsafe.AI_Score_68%
Antiy-AVLTrojan/Generic.ASMalwS.34DF121
MicrosoftRansom:Win32/StopCrypt.MUK!MTB
GridinsoftTrojan.Heur!.02814021
GDataWin32.Trojan.PSE.1YFAP3V
AhnLab-V3CoinMiner/Win.Glupteba.R451708
Acronissuspicious
McAfeePacked-GDT!783BE0BD21D8
MAXmalware (ai score=83)
VBA32BScope.Backdoor.Androm
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_StopCrypt.R002C0DKN21
RisingMalware.Obscure/Heur!1.9E03 (CLASSIC)
IkarusTrojan.Win32
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Packed.GDT!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Win32/Kryptik.HNJU?

Win32/Kryptik.HNJU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment