Threat Database Trojans Trojan.Kryptik.Gen.DBQ

Trojan.Kryptik.Gen.DBQ

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 2,519
Threat Level: 80 % (High)
Infected Computers: 103
First Seen: February 10, 2026
Last Seen: June 5, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Kryptik.Gen.DBQ
Signature status: No Signature

Known Samples

MD5: b054cb025c67eb1e27b984f52a191917
SHA1: 0e95e6d574b84da4473dc2cbe39cf46f9b03e0fa
SHA256: 02FF23A4D5CA9E19B1D6D34BF05E26E1E52834D49C9B342049331D6C161484F4
File Size: 605.92 KB, 605918 bytes
MD5: 451beaf87986ef52605d3a99bd7a6b23
SHA1: 7c991dc2ab2ee41bb0084ec79a8d31fad2fd7d1d
SHA256: 331E592CF7FABAE31508D6EFD7CF9D2F3458F10085BEFA8D59E8A3993EA80E43
File Size: 2.73 MB, 2734937 bytes
MD5: 250ad250af353f31b6c662bd671f2783
SHA1: 548a8defbaf1e3474fa3db69c7268294f6d8895f
SHA256: 54FF42709F0D9FC94F65FE8D7F1288587966DABAE136F9D5C6EC3ED3E9834D34
File Size: 1.81 MB, 1814928 bytes
MD5: 87a87134832dc6bd910a2fdf92ed3a73
SHA1: 0d40f7f81b57243850066185b788242974455536
SHA256: 13D2B6D339946665271581A8D8FED954535F6B3405FB82BBB5614491F7A25DB4
File Size: 1.61 MB, 1614760 bytes
MD5: d833ddd42217849d90418f18e406168b
SHA1: 86b175502337a5a8f5bca48091f5ad6e03b2939a
SHA256: B877F3EF3A5F6941AB8A732CAEAF21FA80A8818814382AA3EC49FD9A6128B45B
File Size: 1.82 MB, 1816484 bytes
Show More
MD5: 285292d86f774302853af0e93a2353c2
SHA1: 2af7161fd492aae8ebc41945a1fa9004960cf0ec
SHA256: 52EDDCFE0DD3093B6D66CEBBD420480846E0AC79C422D88137A1A96AA34FE894
File Size: 1.59 MB, 1593032 bytes
MD5: cac62732830cf65e8578a50a3fc1114b
SHA1: 1c8eb481822afc8dcb7c84b39ed07d08d5eac737
SHA256: FB209B43468810B910846E2520E98DFF84074F60C038362C61A1FD5E92B81834
File Size: 3.41 MB, 3412072 bytes
MD5: 431fd1c2e9e89b58e66ad3ec449f25b8
SHA1: 0afb05de7a6f402605f3dbf8ca5c9a6a378c0e95
SHA256: BBFE9320BC5247DF59E1FB651428D2CA9E5A90105D4473DE73E75CD0A56BE5AC
File Size: 3.40 MB, 3403540 bytes
MD5: 8d91a5287d842fc54a20b43abe4f42cd
SHA1: f9c01a81c780f1d3a9c33925235ef2f5735c2b11
SHA256: C140527D5665214300EBD20CF46CA1F9DA97303971204B01A9A22784F6D662AE
File Size: 1.12 MB, 1115720 bytes
MD5: 805d16ce8bd7bc6a0eb05cfc9d933f20
SHA1: a1b9d4a5e5f402f8c9ee41c0f30181b902dcdb5f
SHA256: E25613EDC204FEC0E3B94D942D003A0EEB656DC365664AE5E377A721416598F7
File Size: 1.10 MB, 1100728 bytes
MD5: d3e92da9c7fb8fa6c5c23fd8fdc73872
SHA1: 630de320379240f4a4f0382fb55e21d85c2e53ef
SHA256: CB199DB146FB7FD5B31C7B2C05F29E163EE807DE60CCAA517F5DC5DDF6B37093
File Size: 1.08 MB, 1084000 bytes
MD5: 0f1d74715336395ab592576d66df7003
SHA1: cacf1bf6b1d494d849dfdad1a1cd9b99b9b56705
SHA256: 8276E230DABEC99FDC6AD74F56E09196A0B5B454459A76F7B6FEE24BC7928294
File Size: 1.08 MB, 1078920 bytes
MD5: 448788199244eb82b8eb561094fc3e35
SHA1: ff34f7f0769db10347776208df06718b9bdb3765
SHA256: 0625D020AE31CA641D5C5968ED0D36C5ABA6474DC70C57237D84046C7A8001A3
File Size: 1.08 MB, 1084520 bytes
MD5: 73ef1432675addd0cb60676672e34da9
SHA1: 8c2d7c45ad02186e9dda43e1cd88b79ab132a549
SHA256: 7962A5EE5F758C36B5B9095F26681D64C068C06A8A0A67E47A7BC8E2DA5769A8
File Size: 1.08 MB, 1083572 bytes
MD5: 02f2aab7072018656093074b754278bf
SHA1: 1d30452028a111831dc361d363f56c060188e4b2
SHA256: EFDB7108BCBBD9D5D930A006AAA75A256D147D51A2D6DDBCE84D74525F617D7E
File Size: 1.11 MB, 1109744 bytes
MD5: d06c23047c0da2dadf2a10ef36d27047
SHA1: 60e4444fdb9d32abcdc54f0e5355bd7e45db02c9
SHA256: 73FF03B2B1B39AB61D33024E5727546FF3B10204431C7B930565C025C3937247
File Size: 1.10 MB, 1101572 bytes
MD5: 07c2cbda2f819a716908b32e770408d6
SHA1: 5ee7d48a24cdb1db6277f545db8bb3ec27e2015c
SHA256: C37FA714409625C264773F135B84F251F3963A1EA1DFA5C2A2729EBC7DD5D3C3
File Size: 1.14 MB, 1135108 bytes
MD5: 50390b94cd5a9bc02b0389a9fead6ce0
SHA1: 6524af1cfa99cb211bc10e0dc30eb22603ed1b4e
SHA256: 8DD93DBD95CE01A350539803C95C41742F7441F79FFC19632409D56CCFB1E4B0
File Size: 1.10 MB, 1095728 bytes
MD5: 4e213d2e21e768579d33645738c2c19f
SHA1: daf638b0b8354d73a1ae7677089d0ae069a0dd8d
SHA256: CA2EB8AC848E36E50DC6B489D2CECAAE28F872B4C2540A3DF512783846746C7D
File Size: 1.10 MB, 1103160 bytes
MD5: cefcb24ea7d0ec18ce00336d46814e97
SHA1: 7dfaee6044944e38061f9998433f8a4f2878b6a8
SHA256: C907D5F498820D3834859761510FB4D944E304EDD9AB1F36BB96660E6FDE4B41
File Size: 1.09 MB, 1094456 bytes
MD5: e30b7d9e68a4178e09389862711d8bf1
SHA1: 7def1cc1e511c2c77141a15a1acb01ffdc271bbe
SHA256: E9A2437966DB6B80E3335DD221C7085680156862CF88F5C925D3EEDFC2A1A13F
File Size: 1.08 MB, 1082896 bytes
MD5: a19bb6fa182732330e4389da11abe1de
SHA1: 63d05ca277e92a6dd8a93cbb6697cf184aa86c54
SHA256: 79545BDEF9DA3EB4AE5D8EAC2E83FF7524B94721E222BEA55CC7807EBB7F31C7
File Size: 1.08 MB, 1078732 bytes
MD5: ba39a86173dc9b4d9799f534240d5ae0
SHA1: 31e288a7b8f1cd7acdfea3af6697f57535bce5dc
SHA256: F13CC4E5DABDBA57BA2B2E6A6112B51B5DEA0847918A93B09993AE433720447E
File Size: 1.09 MB, 1091088 bytes
MD5: 34b656147ad037217212a45ce7c4164a
SHA1: 94f184b00da73f4b27814824305f086cc11787fc
SHA256: E927D844BA1D0601879E5F1818FDDAE6CD20C89699DD21428F93BF3D7DCAD8EB
File Size: 1.13 MB, 1131108 bytes
MD5: 2918a3fb943b0f0a91d399efb0dd15f5
SHA1: dde82f0d1329e719d2b978d00283e53425aa567e
SHA256: 8FC870F99354D3A6D3814CAB0F6326C347CECE51FB69BC2F66A7CA646432FA66
File Size: 1.10 MB, 1095256 bytes
MD5: 24b31ea6e9c165c3a96c08e6827d3bee
SHA1: f1e4085ebfc4245bffb8c4e8174b775394b7e05e
SHA256: 677F3B5309BE5AE4FB87D3EFACD66F28F710DB5B591F00B432BBF6F6A71092CB
File Size: 1.13 MB, 1127488 bytes
MD5: 9ef3911531b238b3705b7fe686be0848
SHA1: fe82005b91e84acaa1df1f92d405556358250cbc
SHA256: 8F3344FEFDFF2AB67E11661D7CA8B2C2DC4FCDCE1271A2465C504473914AA479
File Size: 1.14 MB, 1141400 bytes
MD5: 04b917332b3fc7726998f8eef1f5cdaf
SHA1: dd6c9f96e6b9a7f515508188ab8e9842d41267a3
SHA256: A402EB073ADB6EED6AEC337B65CB279A281FC97ADC8BC4E7C8A1FAE69814F7C4
File Size: 1.10 MB, 1101276 bytes
MD5: 758fc46e81b1c4a319e05031463a5b86
SHA1: 739f51ecf58d587b861b6b4ea8f1f09d132654e5
SHA256: 083B267E25CBB1FD82205751D73BAFE1A054F12632D101C4251A7B0B7AE4352E
File Size: 1.12 MB, 1115640 bytes
MD5: c0b39c609de91d427a82b88010cecf08
SHA1: 8e2e537a10a85a3e531aecf612af81444cfa3bee
SHA256: F95B6C5952B1E4478AF42192CAF01107717F93ECC11316A5FFCCC12254D18AC6
File Size: 1.14 MB, 1136552 bytes
MD5: ccbc38a1c1370356958eeb0b8db102be
SHA1: 50e09d049d96ba0857adf6ef4386314bc7422778
SHA256: 17849A20DA1A0A853F1407AACD79753E7C8D6EE55384FD51685B5D601ABEEE93
File Size: 1.17 MB, 1172520 bytes
MD5: 98823def383f6e9f6d790260f3a02ffd
SHA1: e39f73c9126aa537c6818501ae8ed1c978d11fa5
SHA256: 27FD17EF0E6FE9D2E022AF29C9C45479480C6931D6CE2893D22019C549C67B85
File Size: 1.13 MB, 1134536 bytes
MD5: 6006ac0a49d1dbc36b219329dcc2b4f2
SHA1: 2f3d6f887d2f2aeadf23a177c63802db873d1dce
SHA256: 9F114267DE98514C530686EC0091B189D51C50EF43E74C2FC98152F216D3E576
File Size: 1.12 MB, 1116876 bytes
MD5: d0ca6d70596a112dd24df8c95e8bd500
SHA1: 57b17a5bf0fe816fd97041709edecf7c8c486b29
SHA256: 3A0676CF60E692E3B73BA0812897CEC864B51E5FE6DA4D446A7FE890AC6A8F49
File Size: 1.16 MB, 1159996 bytes
MD5: d66013019d5f58bd8e381364f85d8cbf
SHA1: efb02816239d70386c9d5e4100dd8ffc26b5ae81
SHA256: 455FBC9B8F7EE0D034B5AE7C5448DF04F8AA710315BAA79A3E10D6C57EC3D9CE
File Size: 1.14 MB, 1143548 bytes
MD5: 05e3e92e083c2e8326618759f6e9d774
SHA1: a5451e8bc4dc02f4eebe711d96f846f80aed5d9e
SHA256: 5D9A47CA3A87F17EB43C583A16304C2EEF6CFCB8FB36727195EB7E80B9610D15
File Size: 1.16 MB, 1161596 bytes
MD5: 5b459eb2698a6fc6d2908c702c8e7d58
SHA1: 0bbd72cb8e53ba692b766d75a6a9e5972b6b4398
SHA256: EF6C53634DD2EB2141F5FCAC375FB99A021835F007342970D372F9BC7790D34F
File Size: 1.14 MB, 1135448 bytes
MD5: b555b66cf398d7df8b2f2a12bc5deddd
SHA1: bd0f58bb28d1d2c5272f6b27e8b2387e45a75f25
SHA256: F3E2E5A639887482DF5DA2DD4FA6128D6341FAE7450E73E61D94871AF5C80466
File Size: 1.14 MB, 1142176 bytes
MD5: 0e174536023334e994f426a767d74f1d
SHA1: fef280c0623dd567af1895ec79daebcb97474605
SHA256: D6C265F1C8EAC388A1A16E75545C2F760B93633CF8E5F26C8B286E784639BAFB
File Size: 1.14 MB, 1140212 bytes
MD5: 2de29cc72606d82de674906539fe3ed4
SHA1: 0dfc62f9261d2d639c3db256f2cc19b415683997
SHA256: B27DB156953619B22EBC05140AF84033B36E1F1C07B7AD2BBC567D270D3C6D9F
File Size: 1.14 MB, 1136344 bytes
MD5: 68d4428364513c26d69db32c10fb701d
SHA1: 5990c00e577fda8da3efde9ff48ccf32fbb742f1
SHA256: 29F36A71363CDA29AE7FA3524B1AE317E283854D045480E0F3741B98A4F00222
File Size: 1.16 MB, 1161564 bytes
MD5: 14cf73c2b20efd6e0de10ff2035cad0e
SHA1: 6736039f9c670c6536ae5c7a720f3ccd2b4690aa
SHA256: 8DB8DE2AB79F2F75EF683A93A6FA1F18738D399FA9CFA4A0DC21832B6F5743D1
File Size: 1.14 MB, 1140664 bytes
MD5: f64660d823b06add2c161cd66380e577
SHA1: 258ad3413ee5c28738b5f223f717fae0725b5922
SHA256: 8E9A266F67E2AB0CAB10C6FC8CD1510FCAD4A790691D0AA6DA14D894CF8F6985
File Size: 1.14 MB, 1137100 bytes
MD5: 8f6324e1dfe26898577f204c512b87c8
SHA1: d90c70c49b6af3229f4c0c9b56d7b37c7d8776ae
SHA256: 901048F16D6BBA02A5230876D7B13C0D6564E083682B39A78DC467A1EED0BDA7
File Size: 1.13 MB, 1133560 bytes
MD5: b58d9b3002cc4efb21aaeca41c563caf
SHA1: 56fc21b0a8c1e419359b4cbd400fa5dd77d6dd95
SHA256: F9A136D81DE766E53CF532B80E23BBCC0758C2D355863F597F85446B15BCE6FD
File Size: 1.13 MB, 1127044 bytes
MD5: 3572fc163dc4f8c966423761ba153a9a
SHA1: 2c062c2789ce0005963fa221ea4a49cca3c2f246
SHA256: CC7F9C3DD4A3A0ABE8328E5FE8C2A0D6CF7DE57848C507F486FBB07AB554E27D
File Size: 1.15 MB, 1151164 bytes
MD5: 94335283b092aaf0516b06b1a20314b0
SHA1: 8a6e887b4ff93bb0c4844d3d68f4ff601fd6ee81
SHA256: 260AF379BA99B1EE84B7546B3327F33618AD932FDC068E4604C3A891A5A2B9EC
File Size: 1.14 MB, 1138484 bytes
MD5: ac90880794735946b0b78a963d256fbd
SHA1: 726c63db234911a56d76c4df109de9afd03c7f6b
SHA256: 981EB1CDA40EC5FFC1B0D2FB51D99F872584E1CEF81AEDFA9EFD916A5866DA38
File Size: 1.15 MB, 1151524 bytes
MD5: 4b889856034dd6bbfdfe07d3b8c63e6a
SHA1: 7453d3cba1f8dac19a96e3e11964eb981f6ec89a
SHA256: ABBCE85500F4A22D2DC668B736C5C2EBFBDEC41F8940080E86CC691D6CD7BE68
File Size: 3.59 MB, 3586452 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have security information
  • File has exports table
  • File has TLS information
  • File is 64-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
Show More
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

Windows PE Version Information

Name Value
Company Name
  • Addon Banking Ventures
  • Aero11 Trust
  • Alpha-Sigma Commission
  • Astro.meta Sphere
  • Basic Sun Limited
  • Bit, Ultra and Keen Investments
  • Blendstrong Section
  • Considerable Crown Bureau
  • Cross Unit
  • Crystal Customer Fast BV
Show More
  • ElementDoor Technologies
  • Fermion Provisioning Volt Ventures
  • First15 Universe
  • Flow New Soft Investments
  • Gamma Nova Co
  • Geo-Fast Network
  • GeoWX Pty
  • Global Pipe Soft Associates
  • Global Uni Quad League
  • Global Zeta Byte Commission
  • Grid Benchmark Wireless
  • Ice Council
  • International Array Club
  • Major Core AG
  • MatrixFirst Co
  • Peak, Nova and Nexus Agency
  • PinnacleFireRed SA
  • Prime Architecture Ultra Computing
  • Pure Beacon Network
  • QuickThetaBlend Holdings
  • Research Assets
  • Research Telecommunications
  • Script & Omega Pty
  • Sequence Technologies
  • Sky Prime Wireless
  • Solar Find PC
  • Stem Theta & Wise Committee
  • The Bright Pure Office
  • The Crown Peta Factory
  • The Ice Holdings
  • The Neutron Chain Sphere
  • The Omega Crest Ltd
  • The Stream Partners
  • The Trail Associates
  • Ultrastrong Mobile
  • VortexFlow PLC
  • Window Speed Eco LLC
  • Wiselepton College
  • ZetaSage Zone
File Description
  • Academic Sector Gateway
  • Animation Resonance Infrastructure Warn Checker
  • Approach Allow Divide
  • Augmented Bridge Rich Layer
  • Authoritative Regulatory Runtime
  • Broadcasting Suspend Aggregator
  • Canonical Life Framework
  • Classic Area Subsystem
  • Cloud Advanced Integrated Plugin
  • Cluster Pattern Process Recycler Module
Show More
  • Command Configure Runtime
  • Concurrent Impressive Handler
  • Copyright Fill Astounding Compressor Interface
  • CRC Sales Continue Helper
  • Dashboard Template Collection Accelerator Layer
  • Database Genuine Connect
  • Deep Latency Handler
  • Deploy Learning Extension
  • Distributed Visualization Pause
  • Expression Watcher Compliance Planner Engine
  • Family Segment Record Resume Converter
  • Fiber Brush Human Consolidator Layer
  • Green Wavelength Fabrication Calendar
  • Heart Firmware Library
  • Hiring Peek and Compress Broadcaster
  • Hiring Router Improved Packer Plugin
  • Honest Safe Environment Route Layer
  • Import Design Module
  • Innovative Bespoke Orchestration Pack Helper
  • Integrated Cluster Established Cutter
  • Interpreter Current Service
  • Item Radio Adapter
  • Module Notify Engine
  • Network ARQ Combined Pause Adapter
  • Normal Rescue for Tier
  • Noteworthy Broadcasting Distributor
  • Observer Calculate Framework
  • Plugin Large Graphs Output Handler
  • Portfolio Trace and Transform Unpacker
  • Pure Instance Operations Translator
  • Revolutionary Main Transfer Transponder Library
  • Router Get Adapter
  • Saver Adapter Install Stream Handler
  • Scene Grand Component
  • Spectrum Machine Astonishing Layer
  • Straightforward Setup Layer
  • User Grid Analytics Splitter Driver
  • Vortex Library Manufacturing Decoder
  • Warehouse Dispose and Send Chunker
File Version
  • 19.6.53.559
  • 19.6.34.525
  • 16.10.17.674
  • 13.3.2.90
  • 13.0.36.155
  • 12.4.36.328
  • 11.8.33.230
  • 11.1.37.49
  • 10.14.27.597
  • 10.4.91.719
Show More
  • 9.9.36.823
  • 9.7.63.455
  • 9.4.35.215
  • 9.3.40.905
  • 9.2.9.95
  • 9.0.37.391
  • 8.4.4.288
  • 8.3.38.387
  • 7.6.12.92
  • 7.2.12.181
  • 7.1.19.40
  • 6.5.6.166
  • 6.4.13.170
  • 5.8.11.110
  • 5.8.4.76
  • 5.6.4.85
  • 5.3.84.996
  • 5.2.13.377
  • 5.2.6.66
  • 4.4.2.144
  • 4.2.26.80
  • 3.12.41.507
  • 3.6.2.66
  • 3.5.7.28
  • 3.4.18.3
  • 3.3.29.328
  • 3.1.24.226
  • 3.1.7.27
  • 2.10.49.963
  • 2.8.7.79
  • 2.5.48.256
  • 2.5.2.39
  • 2.2.29.212
  • 2.1.39.161
  • 1.12.14.738
  • 1.8.2.50
  • 1.5.22.198
  • 1.5.11.82
  • 1.3.8.34
Internal Name
  • administration_combiner
  • auth51
  • bitmap_backup
  • bufferreducer
  • certificatecapture
  • checkcalendar
  • chrome_elf
  • cloud_assembler
  • column_coll
  • controllereditor
Show More
  • ecoexplorer
  • encoder_laboratory
  • encode_certification_text
  • enqueue_component
  • FileResolver
  • finalize_warp
  • format_logistics_plug
  • fragment_multi
  • gradie_access
  • helper_8c44
  • interface_broadcaster
  • libcache91
  • logicalopen
  • magnificentgovernor
  • micro_automation
  • natural_transform
  • operationaldoctor
  • orthodox_modern
  • orthodox_wireframe
  • path_piece
  • perceptivestopper
  • piece_fullstack
  • postopen
  • professional_dynamic
  • python310
  • runtime_bf786
  • solidresume
  • sqlite
  • stack_disconnect
  • template29
  • tuple_orig
  • unbind_entry_adap
  • upload_client
  • validation_glob
  • value_transaction
Legal Copyright
  • (C) 2012 - 2019 Flow New Soft Investments
  • (C) 2016 - 2021 Alpha-Sigma Commission
  • (C) 2019 VortexFlow PLC
  • (C) 2019-2019 Stem Theta & Wise Committee. All rights reserved.
  • (C) 2020 - 2020 MatrixFirst Co
  • (C) 2020 by Bit, Ultra and Keen Investments
  • (C) 2020 by QuickThetaBlend Holdings
  • (C) 2020 First15 Universe
  • (C) 2021 Ultrastrong Mobile. All rights reserved.
  • (C) 2023-2023 Aero11 Trust. All rights reserved.
Show More
  • (C) 2026 Basic Sun Limited
  • (C) 2026 Gamma Nova Co
  • (C) Copyright 2023 Pure Beacon Network
  • 2018 The Bright Pure Office. All Rights Reserved.
  • 2019 The Ice Holdings. All Rights Reserved.
  • 2020 Considerable Crown Bureau. All Rights Reserved.
  • 2021 Blendstrong Section. All Rights Reserved.
  • 2022 Sequence Technologies. All Rights Reserved.
  • 2024 Global Uni Quad League. All Rights Reserved.
  • Addon Banking Ventures, Copyright 2023
  • All Rights Reserved. Copyright 2019 Major Core AG
  • All Rights Reserved. Copyright 2026 Astro.meta Sphere
  • Copyright (C) 2015-2022 Prime Architecture Ultra Computing
  • Copyright (c) 2018 by Sky Prime Wireless
  • Copyright (C) 2018-2019 Research Assets
  • Copyright (C) 2018-2026 Global Zeta Byte Commission
  • Copyright (c) 2019 by Geo-Fast Network
  • Copyright (C) 2019-2025 Cross Unit
  • Copyright (c) 2020 by The Stream Partners
  • Copyright (C) 2021 The Crown Peta Factory
  • Copyright (c) 2022 by Grid Benchmark Wireless
  • Copyright (C) 2022 ZetaSage Zone
  • Copyright (c) 2026 by Ice Council
  • Copyright (C) 2026, The Trail Associates. All Rights Reserved.
  • Copyright 2017, 2024 GeoWX Pty
  • Copyright 2020, 2020 Solar Find PC
  • Copyright 2021 International Array Club. All Rights Reserved.
  • Copyright 2021. PinnacleFireRed SA
  • Copyright 2022 Crystal Customer Fast BV
  • Copyright 2025. The Neutron Chain Sphere
  • ElementDoor Technologies Copyright 2023-2024
  • Fermion Provisioning Volt Ventures - Copyright (C) 2023
  • Global Pipe Soft Associates Copyright 2015-2018
  • Peak, Nova and Nexus Agency (C) 2021
  • Research Telecommunications (C) 2024
  • Script & Omega Pty, Copyright 2022
  • The Omega Crest Ltd, Copyright 2026
  • Window Speed Eco LLC - Copyright (C) 2021
  • Wiselepton College Copyright 2022-2024
Original Filename
  • administration_combiner
  • auth51
  • bitmap_backup
  • bufferreducer
  • certificatecapture
  • checkcalendar
  • chrome_elf
  • cloud_assembler
  • column_coll
  • controllereditor
Show More
  • ecoexplorer
  • encoder_laboratory
  • encode_certification_text
  • enqueue_component
  • FileResolver
  • finalize_warp
  • format_logistics_plug
  • fragment_multi
  • gradie_access
  • helper_8c44
  • interface_broadcaster
  • libcache91
  • logicalopen
  • magnificentgovernor
  • micro_automation
  • natural_transform
  • operationaldoctor
  • orthodox_modern
  • orthodox_wireframe
  • path_piece
  • perceptivestopper
  • piece_fullstack
  • postopen
  • professional_dynamic
  • python310
  • runtime_bf786.dll
  • solidresume
  • sqlite
  • stack_disconnect
  • template29
  • tuple_orig
  • unbind_entry_adap
  • upload_client
  • validation_glob
  • value_transaction
Product Name
  • Aqua Bone Straightforward Transformer
  • Band Resistance Fog Miner
  • Begin Reminder
  • Bio Prime Pattern Divider
  • Blunt Distributor 5
  • Boson Vertex Modulator Batcher
  • Brave Engine Typical Collector
  • Chorus Certified Perceptive Binder
  • Communication Module Connect
  • Compatible Universal Footer Bridge
Show More
  • Complete Render Sector Debugger
  • Deal Mixer Resolver
  • Easy Server Session Creator
  • Expression Safe
  • FacadeEnergy Ultra Maker
  • Facade Tuple Attacher
  • Fast Element Recorder
  • FEC Fixer
  • File CRC Bundle Reminder
  • Graphs Auth Bundle Boxer
  • Heavy Include Demodulator Controller
  • Honest Obligatory Coach
  • Index Reliable Member Viewer
  • Insights Piece
  • Lookup License Reconfigure Navigator
  • Monitor Important Bespoke Continue
  • ObserverBone Exceptional Portal
  • Observer Innovative Repair
  • Optimized Initializer
  • Path Frank Dicer
  • Pattern Flow Identity Tool
  • Pattern Futuristic Developing Booster
  • PatternHandler Sincere Balancer
  • Pause Updater
  • Pen Modulator Translator
  • Phenomenal Rule Lookup Aggregator
  • Premier Distort Highlighter
  • Proxy Common Transformer
  • Sage Facade Natural Snapshot
  • Schema Coach
  • Software Resume
  • Spectrum Common Monitor Subscriber j92
  • Speed Cutter
  • Thrift Digital View Organizer
  • Universal Summit Neural Optimizer
  • User Boxer
  • Value Immediate Organizer
  • Volume Merged Tester
  • Worker Total Communication Utility
Product Version
  • 19.6.53.559
  • 19.6.34.525
  • 15.4.46.31
  • 14.12.78.732
  • 13.0.36.155
  • 12.6.12.406
  • 12.4.36.328
  • 11.4.4.325
  • 11.1.2.363
  • 10.8.38.485
Show More
  • 10.4.91.719
  • 10.1.14.66
  • 9.0.37.391
  • 8.14.24.771
  • 8.7.39.60
  • 8.3.38.387
  • 7.14.41.783
  • 7.2.25.83
  • 6.10.39.216
  • 6.6.50.318
  • 6.6.32.98
  • 6.5.11.138
  • 6.5.6.166
  • 6.0.30.16
  • 5.6.4.85
  • 5.4.1.259
  • 5.3.9.24
  • 5.2.13.377
  • 5.2.6.66
  • 5.0.19.96
  • 4.6.39.298
  • 4.5.10.145
  • 4.5.2.19
  • 4.4.30.861
  • 3.9.27.178
  • 3.7.20.79
  • 3.7.15.260
  • 3.6.2.66
  • 3.3.29.328
  • 3.1.7.27
  • 2.6.10.15
  • 2.5.40.343
  • 2.2.53.511
  • 2.1.39.161
  • 1.12.18.25
  • 1.11.13.151
  • 1.2.1.74
  • 1.1.27.421
  • 1.1.0.1

File Traits

  • big overlay
  • dll
  • fptable
  • HighEntropy
  • Installer Manifest
  • Installer Version
  • ntdll
  • x64

Block Information

Total Blocks: 1,798
Potentially Malicious Blocks: 669
Whitelisted Blocks: 528
Unknown Blocks: 601

Visual Map

x ? ? 0 0 ? x ? ? ? x ? x ? ? ? ? x ? x x 0 ? ? 0 ? 0 ? ? ? ? ? ? x ? x x ? 0 x ? 0 x ? x ? x ? ? x x x x x 0 x x x x ? x ? ? ? x x x ? ? x x x ? ? 0 x 0 x x x ? x x x ? ? ? x x x x x ? x ? 0 x ? x ? x ? x ? x x x ? 0 x 0 ? x ? x ? ? ? x x ? x x x x ? ? x x x x x x ? ? ? 0 ? ? x x ? ? ? x ? ? x x ? x x ? ? x ? ? ? x ? ? ? ? x ? ? ? ? x x ? ? ? x ? 0 ? x x x x ? x x x x 0 x x x x ? ? 0 x x ? 0 x x 0 0 x x ? ? ? x x 0 x x x x x ? ? ? x ? x ? ? ? x 0 ? x x 0 x ? x x ? x ? 0 0 0 0 ? ? x ? ? x x x x x x ? x ? ? x x x ? ? 0 ? ? ? ? x x ? 0 ? x x x x x x x 0 ? x x ? ? x ? x ? x 0 ? ? ? 0 x ? x x ? ? x x x x 0 0 ? 0 x x x x ? x ? x x ? ? ? x x x x x ? x x x ? ? ? ? ? x ? ? x x 0 ? ? ? 0 ? ? x 0 ? 0 x x x ? ? ? x x 0 x x x ? ? x x x x ? ? ? 0 x x ? x ? x ? 0 ? x x ? ? x ? 0 ? ? ? x 0 x ? x x ? x x ? ? x ? x ? x x x x ? x ? x 0 ? x ? x ? ? x x x x ? x x 0 ? x x ? x x ? ? x x ? x x x x x x 0 0 ? 0 x x ? x ? x x 0 x ? 0 x x x ? 0 ? x ? x ? ? ? x x x ? x 0 x x ? ? ? 0 ? x x x ? x x ? ? x x ? x 0 ? x x x x ? x x ? x ? ? x x x x x ? ? x ? x x ? ? x x x x ? x x ? ? x ? x x x x x x ? ? x x ? ? x ? ? x x x x x x ? x x x ? x x x x x x x ? x x ? x ? x ? ? ? ? ? x x ? 0 ? x ? x ? ? 0 x 0 ? 0 ? x x x x 0 0 0 x x ? 0 ? x x ? ? x x 0 x ? x ? x x x x x ? x ? ? ? ? x x x x ? x 0 x x ? ? ? x x ? ? x x ? 0 0 x ? ? ? x x 0 x ? x ? x x x x x x x ? x x ? x ? ? ? ? 0 ? x x ? x 0 x x ? ? ? ? x 0 ? ? x 0 ? x x x x ? ? ? x x x x ? ? x ? ? x ? ? x x ? ? x x ? x x x ? x x ? x ? ? x x ? x ? x ? ? x ? ? x ? x x ? ? x ? 0 x x ? 0 x ? x x ? x ? x x x ? ? ? x x x x x ? x x x 0 x x 0 ? ? x ? ? x ? x ? x ? ? ? ? x ? x x x ? ? x x ? ? x x 0 ? 0 x ? x x x ? x x ? ? x x 0 ? x x ? x x x x ? ? ? x x x x x x x ? x x ? ? x ? x 0 x ? x x ? ? ? ? x x x x x x ? 0 ? 0 ? x x x ? 0 ? x ? ? x x ? ? 0 x ? 0 x 0 x 0 0 x x x x ? ? 0 x ? x x x 0 x x x ? x x 0 0 ? x ? ? ? ? ? ? x x x ? ? 0 ? x x x ? x ? x ? ? ? ? x ? ? ? x x x ? x x ? x ? x x x ? x x ? 0 ? x x 0 x x 0 x ? ? x ? x x ? x ? ? ? ? x 0 0 x ? x x ? ? ? x x ? ? ? ? x x ? x x ? x x ? ? x x x x x 0 ? 0 0 0 x ? ? ? x ? x x 0 x ? ? x ? x ? ? x ? x 0 ? ? x ? x 0 x x ? x ? ? x x ? ? ? ? 0 0 ? x x x x x x x ? 0 x ? ? x x x ? ? ? ? x ? 0 ? x 0 ? x x x ? 0 x ? ? ? x x ? ? ? ? x x 0 ? x ? ? ? ? x x x x x x ? ? 0 x ? x 0 ? x x 0 x ? ? ? x x ? x x x x x x x x ? x x x ? x ? x 0 ? x ? x ? x ? x x x x ? 0 ? ? x ? ? x ? x x x ? 0 x x ? ? ? ? x ? x ? ? x x x x ? x x x x ? ? x ? x ? 0 ? x ? x x x ? ? ? 0 x 0 ? ? ? ? x x ? ? 0 x ? x x ? x ? ? x ? 0 ? ? 0 x x x x x ? x 0 x x ? x 0 ? x 0 x x x ? x 0 ? ? 0 0 ? x ? ? x ? x ? x x ? x ? ? x x ? x x ? x x x ? ? ? x ? x ? 0 ? x ? 0 x ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? 0 x ? ? ? ? ? x ? 0 0 ? ? ? ? 0 ? x ? ? ? 0 ? ? x ? x x ? ? x ? x ? x x x x x ? ? ? ? ? ? ? ? 0 x ? ? x 0 x ? ? x ? ? ? ? x x x ? 0 ? x ? ? x 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 2 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.FTS
  • Agent.KUH
  • Agent.MIC
  • Agent.MPD
  • Agent.VYB
Show More
  • CobaltStrike.SVN
  • Injector.BIB
  • Injector.BUB
  • Kryptik.CTD
  • Kryptik.CTF
  • Kryptik.DEQ
  • Kryptik.GTCG
  • Kryptik.GTCI
  • Kryptik.GTCJ
  • Kryptik.GUB
  • LockScreen.AG
  • Lumma.JC
  • Marte.CP
  • Rozena.XV
  • ShellcodeRunner.RRB
  • Trojan.Agent.Gen.BCO
  • Trojan.Agent.Gen.BGO
  • Trojan.Agent.Gen.BNR
  • Trojan.Agent.Gen.BPF
  • Trojan.Downloader.Gen.KG
  • Trojan.Injector.Gen.GOC
  • Trojan.Kryptik.Gen.CFT
  • Trojan.Kryptik.Gen.DBQ
  • Trojan.Kryptik.Gen.DKA
  • Trojan.Kryptik.Gen.DOM
  • Trojan.Kryptik.Gen.DUH
  • Trojan.Kryptik.Gen.DZH
  • Trojan.Kryptik.Gen.EAW
  • Trojan.Kryptik.Gen.EEG
  • Trojan.ShellcodeRunner.Gen.KE
  • Trojan.ShellcodeRunner.Gen.KI
  • Trojan.ShellcodeRunner.Gen.KS

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtAccessCheck
  • ntdll.dll!NtAddAtomEx
  • ntdll.dll!NtAlertThreadByThreadId
  • ntdll.dll!NtAlpcSendWaitReceivePort
  • ntdll.dll!NtApphelpCacheControl
  • ntdll.dll!NtClose
  • ntdll.dll!NtConnectPort
  • ntdll.dll!NtCreateEvent
  • ntdll.dll!NtCreateMutant
  • ntdll.dll!NtCreateSection
Show More
  • ntdll.dll!NtDuplicateObject
  • ntdll.dll!NtDuplicateToken
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtMapViewOfSection
  • ntdll.dll!NtOpenFile
  • ntdll.dll!NtOpenKey
  • ntdll.dll!NtOpenKeyEx
  • ntdll.dll!NtOpenProcessToken
  • ntdll.dll!NtOpenProcessTokenEx
  • ntdll.dll!NtOpenSection
  • ntdll.dll!NtOpenSemaphore
  • ntdll.dll!NtOpenThreadTokenEx
  • ntdll.dll!NtProtectVirtualMemory
  • ntdll.dll!NtQueryAttributesFile
  • ntdll.dll!NtQueryDebugFilterState
  • ntdll.dll!NtQueryDirectoryFileEx
  • ntdll.dll!NtQueryInformationFile
  • ntdll.dll!NtQueryInformationProcess
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryInformationToken
  • ntdll.dll!NtQueryKey
  • ntdll.dll!NtQueryPerformanceCounter
  • ntdll.dll!NtQuerySecurityAttributesToken
  • ntdll.dll!NtQuerySecurityObject
  • ntdll.dll!NtQuerySystemInformation
  • ntdll.dll!NtQueryValueKey
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtQueryVolumeInformationFile
  • ntdll.dll!NtQueryWnfStateData
  • ntdll.dll!NtReadRequestData
  • ntdll.dll!NtReleaseMutant
  • ntdll.dll!NtReleaseSemaphore
  • ntdll.dll!NtReleaseWorkerFactoryWorker
  • ntdll.dll!NtRequestWaitReplyPort
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationProcess
  • ntdll.dll!NtSetInformationVirtualMemory
  • ntdll.dll!NtSetInformationWorkerFactory
  • ntdll.dll!NtSubscribeWnfStateChange
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtTraceControl
  • ntdll.dll!NtUnmapViewOfSection
  • ntdll.dll!NtUnmapViewOfSectionEx
  • ntdll.dll!NtWaitForAlertByThreadId
  • ntdll.dll!NtWaitForSingleObject
  • ntdll.dll!NtWaitForWorkViaWorkerFactory
  • ntdll.dll!NtWaitLowEventPair
  • ntdll.dll!NtWriteFile
  • ntdll.dll!NtYieldExecution
  • UNKNOWN
Encryption Used
  • BCryptOpenAlgorithmProvider
Anti Debug
  • OutputDebugString

Trending

Most Viewed

Loading...