Malware

Win32/Kryptik.HNKK removal instruction

Malware Removal

The Win32/Kryptik.HNKK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.HNKK virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Kryptik.HNKK?


File Info:

name: 6B789619F40BBFD5BF30.mlw
path: /opt/CAPEv2/storage/binaries/a0c7987299197272934b78a67c185b0a32838b57f92535629d6bc0394251fed5
crc32: 9D1E0C35
md5: 6b789619f40bbfd5bf3009ed5d9f0842
sha1: bb5ceb44ab7f3120ce71b232968f2db0eeaf3b23
sha256: a0c7987299197272934b78a67c185b0a32838b57f92535629d6bc0394251fed5
sha512: 5d53e1c6b6b1bd3ccbb4a838e8a7d8cfa9ffb0360b5d2d2f365440c0a7c56cb4831478d7f92bf259d9c01e8cbe01bbaba504ffc3be0c7392aa5d51b21c25a8a7
ssdeep: 12288:FU56zQt3OogOSARIA7TSFZZjyrUpGmCMR0uBpKVBv6:Fva6ARx7aZZjyr6y5EpWBv
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12F26AC0B6E6D01D7D4A89F3084145B82BB3425AE3F05ABAB55BC3DB5D8943C37D2BB81
sha3_384: 15024e0622b6723a36abf60cfb9b58f85e17d472e0c8a4d75169d50de846dec44ae92576a75856177a27f389ab093dae
ep_bytes: 8d40a08d52748d5a088d4aa06849f100
timestamp: 2021-11-23 03:25:36

Version Info:

0: [No Data]

Win32/Kryptik.HNKK also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Multi.GenericML.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.38100171
CylanceUnsafe
SangforTrojan.Win32.Save.a
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HNKK
APEXMalicious
KasperskyUDS:Trojan.Multi.GenericML.xnet
BitDefenderTrojan.GenericKD.38100171
AvastWin32:Trojan-gen
Ad-AwareTrojan.GenericKD.38100171
EmsisoftTrojan.GenericKD.38100171 (B)
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.6b789619f40bbfd5
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
WebrootW32.Trojan.Gen
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataTrojan.GenericKD.38100171
CynetMalicious (score: 100)
McAfeeArtemis!6B789619F40B
VBA32Trojan.Wacatac
RisingTrojan.Generic@ML.90 (RDMK:ZRvf215hayAOqiBfmXxXkg)
IkarusTrojan.Win32.Crypt
eGambitUnsafe.AI_Score_99%
FortinetW32/Kryptik.HNKK!tr
AVGWin32:Trojan-gen
PandaTrj/RnkBend.A

How to remove Win32/Kryptik.HNKK?

Win32/Kryptik.HNKK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment