Threat Database Trojans Trojan.Kryptik.BFIJJ

Trojan.Kryptik.BFIJJ

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 11,729
Threat Level: 80 % (High)
Infected Computers: 2,610
First Seen: November 1, 2023
Last Seen: September 5, 2025
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Kryptik.BFIJJ
Signature status: No Signature

Known Samples

MD5: daa4a78c03d9220a5e43877afe8be6ed
SHA1: b55958a2226779896011e10d00c6a8b7b70455cf
SHA256: FDAC8BC0DFB1E0A150C1242E3F6CB3EF31825024A5AAB8236992A92CB1F0BE3C
File Size: 1.05 MB, 1054998 bytes
MD5: d7a7201bab0befabcddc76241142f1ed
SHA1: 232ae1961a339a62ff6fd5f456c4d0bd748140fe
SHA256: D04E0997A811CBD21A4F2F9155726A0C60393EB8DF8E6B1719890DBFA884CDFD
File Size: 323.07 KB, 323072 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Descriptions Buttiskamf
Internal Name Bastard.exe
Legal Trademark1 Fascal
Original Filename Lameros.exe
Product Name Jadocka
Product Version 57.38.26

File Traits

  • HighEntropy
  • No Version Info
  • x86

Block Information

Total Blocks: 511
Potentially Malicious Blocks: 8
Whitelisted Blocks: 499
Unknown Blocks: 4

Visual Map

0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 1 1 0 1 1 0 0 0 0 0 1 0 0 0 0 0 0 1 0 0 1 1 0 0 0 0 2 0 0 0 1 0 0 2 0 0 0 0 1 0 1 0 0 0 0 0 0 0 1 1 0 1 1 0 0 0 0 0 0 0 1 0 0 0 1 0 0 0 0 0 0 0 0 0 2 1 1 3 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 1 0 0 0 0 2 3 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 1 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 2 2 0 0 0 0 0 1 1 0 0 1 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x ? ? 0 ? ?
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Files Modified

File Attributes
c:\users\user\appdata\local\temp\nsdc0a9.tmp Generic Read,Write Data,Write Attributes,Write extended,Append data,Delete

Trending

Most Viewed

Loading...