Threat Database Trojans Trojan.Kryptik.DTU

Trojan.Kryptik.DTU

By CagedTech in Trojans

Analysis Report

General information

Family Name: Trojan.Kryptik.DTU
Signature status: Self Signed

Known Samples

MD5: 221d9f193d54eb064e713a511893324c
SHA1: cd3a9b44069624dd6df171fbaa2e29de7e2cd9b1
SHA256: 968C717479A5A5F63B4C8043A337C2BF83781627812049245504F8E007F86ACE
File Size: 8.48 MB, 8480256 bytes
MD5: 1d5a6fa3cec73d80e058253e5b1bd7d0
SHA1: fa5e977c057885686cbcb8d093b54d420077e0ca
SHA256: A02A4AD9FD75B7CB8E8E3FB65107198756B49FB953B25D730D63820143A151E5
File Size: 8.50 MB, 8504832 bytes
MD5: 8ed4166c87fcc36fdd0cfba2cc657454
SHA1: ead4ebc0d0b7365e0a658e6c15b3d08c763bcc6f
SHA256: F7BCC766E74A93590F4FA30A572FA0FFA98E3FA71FC690E509788A2312F09C7E
File Size: 2.22 MB, 2219944 bytes
MD5: 7eaa19ef42bf41c755af8f5798bf33f2
SHA1: 1d8d4d31e0459c94c86f1475d93ab0d74b7ed60b
SHA256: 64AEF3F0A1CFFC5E1F512ADABC162EE3F6BE861C546F1F575125550D085D35F5
File Size: 2.00 MB, 1999808 bytes
MD5: b5ea66db81d1ee7f1117815441832d50
SHA1: f641c173df23bf0c64dd6b06e72adfaafd98011d
SHA256: DECBA410C0C17F481C6EC5D3C4B8B75D568E1AC4FAD0508E5D320DC9D1A5EC61
File Size: 3.77 MB, 3768832 bytes
Show More
MD5: 60fdfc5772ef21691341efbc3e081209
SHA1: 7dd550ce0633466d7a7f12edfe037fbbd456c4ce
SHA256: 46A9B249A70D194437C8F2D655003FE582AA4C108861448B34B6F9FDB8A80614
File Size: 8.14 MB, 8138232 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Show More

Windows PE Version Information

Name Value
Comments
  • Built with transmit program
  • Built with WTL 14.1
  • Registered Gizmocore+Fluxgrid Link registry
  • Registered Hypergrid of Craze registry
  • Sleek Wooden Sausages - compressing the application won't do anything, we need to transmit the open-source HDD application!
Company Name
  • Innovexis-PixelSync-GameTech
  • Johns - Gutmann
  • Littel - Kutch
  • Ratke LLC
  • Reilly Group
  • TechSync-BitnovaTech
Company Short Name
  • Johns
  • Littel
  • Ratke
File Description
  • Gizmocore+Fluxgrid Link Organizer
  • Hypergrid of Craze Relay
  • Sleek Wooden Sausages Table
  • Small Steel Hat Library
  • transmiter Application
  • XSS bus Sausages
File Version
  • 9.18.5350.255
  • 8.89.92826.3795
  • 7.15.6573.484
  • 3.16.43432.78
  • 3.10.64510.16
  • 2.46.42888.25668
Internal Name
  • Gizmocore+Fluxgrid Link Modeler
  • Hypergrid of Craze Compressor
  • Sleek Wooden Sausages (x86)
  • SmallSteelHat39.dll
  • transmiter43.dll
  • XSS bus (x86)
Legal Copyright
  • Copyright © 2002-2013 Reilly Group. All rights reserved.
  • Copyright © 2007-2021 Littel - Kutch. All rights reserved.
  • Copyright © 2019-2026 Johns - Gutmann. All rights reserved.
  • Copyright © 2023-2026 Ratke LLC. All rights reserved.
  • © Innovexis-PixelSync-GameTech 2019-2023
  • © TechSync-BitnovaTech 2022-2023
Legal Trademarks
  • Innovexis-PixelSync-GameTech proprietary technology
  • Johns - Gutmann proprietary technology
  • Ratke LLC proprietary technology
  • Small Steel Hat proprietary technology
  • TechSync-BitnovaTech proprietary technology
  • transmiter proprietary technology
Original Filename
  • Gizmocore+FluxgridLinkPackage.exe
  • HypergridofCrazeSocket.exe
  • SleekWoodenSausages167.exe
  • SmallSteelHat.exe
  • transmiter.exe
  • XSSbus617.exe
Private Build Build 3810
Product Name
  • Gizmocore+Fluxgrid Link
  • Hypergrid of Craze
  • Sleek Wooden Sausages
  • Small Steel Hat
  • transmiter
  • XSS bus
Product Short Name
  • SleekWoodenSausages
  • SmallSteelHat
  • XSSbus
Product Version
  • 9.18.5350.255
  • 7.15.6573.484
  • 6.83.26404.25248
  • 3.16.43432.60
  • 3.10.64510.37
  • 2.53.7409.18073
Special Build Beta

Digital Signatures

Signer Root Status
Littel - Kutch Littel - Kutch Self Signed
Ratke LLC Ratke LLC Self Signed

File Traits

  • HighEntropy
  • x86

Block Information

Total Blocks: 69
Potentially Malicious Blocks: 46
Whitelisted Blocks: 4
Unknown Blocks: 19

Visual Map

x x x x x ? ? ? x ? ? x x x ? x ? x ? x ? ? x x x x ? x ? ? x x x ? ? ? ? ? x x x x x x x x x x x x x x x x x 0 x 0 0 x x x x x x x 0 x ?
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

Trending

Most Viewed

Loading...