Threat Database Trojans Trojan.Kryptik.HJJ

Trojan.Kryptik.HJJ

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 17,825
Threat Level: 80 % (High)
Infected Computers: 11
First Seen: September 27, 2024
Last Seen: December 4, 2025
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Kryptik.HJJ
Signature status: No Signature

Known Samples

MD5: 7360053285aa8022d02a56869a5af6b3
SHA1: 55521a2b9569523849536d0e75d06eee201e6030
SHA256: 0D2AEFFDE0C5DF508219EC41D117C4CC58AC68E70B82F506CFAD5F31F4486C09
File Size: 8.71 MB, 8711680 bytes
MD5: 30d2b4a7c30c2098fc4c9bb8881f0e2f
SHA1: 418750d07f1cc45139a1cae26f14fe84c3be756a
SHA256: 03BD2A09F225741538CF39B6BC3651FFAEED0B62644779D553DEA8D5338A1B15
File Size: 9.27 MB, 9267712 bytes
MD5: 7a080d6b543cc64dd6d5cc1e6a47cbec
SHA1: 8b5b3155b8593c8118835910805c6164ef66f00c
SHA256: 52B2899C00EA63E8AE23B2F5CE7275CA87E79B7598EBA3EA5262C6212D894EB9
File Size: 8.65 MB, 8651264 bytes
MD5: 05e56ec54bd0f160b0606c7e3c0986fe
SHA1: 69dec5467d186e31ff3b8560c7c0371f2442deac
SHA256: D4ADC67671E5CAD31DA92DF25FD0B8922253A367C044C7D277F03217BC6B0337
File Size: 8.87 MB, 8871424 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have resources
  • File doesn't have security information
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • HighEntropy
  • No Version Info
  • x86

Block Information

Total Blocks: 388
Potentially Malicious Blocks: 181
Whitelisted Blocks: 207
Unknown Blocks: 0

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 x 0 0 x x x x x x 0 0 x 0 x x x x 0 0 x x x x x x x x x x x x x x 1 1 x x x x x x 0 0 0 x x x x x 0 x x x x x x 0 x x x x x x x x x 0 x 0 x x x x 0 x x x x x x x x x x x 0 x x 0 x x x x x x x x 0 x x x x x x x x x x x x 0 x 0 x x x x x x 0 x x x x x x 0 x x x x x x x x x x x x 0 x x x 0 0 0 x 0 0 x 0 0 0 0 0 x 0 x x x x x x x x x 0 x x x 0 x x x x x x x x x x x x x x x x x 0 x 0 0 x x 0 0 x 0 0 0 0 0 0 x x x x x x 0 x x x x x x x x x 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Kryptik.HJF
  • Kryptik.HJJ

Files Modified

File Attributes
c:\users\user\appdata\local\temp\ivqvtzinnt.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\ivqvtzinnt.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\ivqvtzinnt.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\jlaxvrcqro.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\jlaxvrcqro.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\jlaxvrcqro.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\tcdblzygfp.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\tcdblzygfp.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\tcdblzygfp.exe Synchronize,Write Attributes
c:\users\user\appdata\local\temp\wdmlajdpza.exe Generic Read,Write Data,Write Attributes,Write extended,Append data
Show More
c:\users\user\appdata\local\temp\wdmlajdpza.exe Generic Write,Read Attributes
c:\users\user\appdata\local\temp\wdmlajdpza.exe Synchronize,Write Attributes

Windows API Usage

Category API
Encryption Used
  • CryptAcquireContext

Trending

Most Viewed

Loading...