Threat Database Trojans Trojan.Kryptik.ODFB

Trojan.Kryptik.ODFB

By CagedTech in Trojans

Analysis Report

General information

Family Name: Trojan.Kryptik.ODFB
Signature status: Self Signed

Known Samples

MD5: 2cec840a9596912d3643d70e7a84b754
SHA1: b6e2678a2338688b65331321ed032d6a9054d11e
SHA256: 23349E142EB22254DD055D7F40BE3329AF50630C23188104AE2A4128D9D98F5B
File Size: 9.77 MB, 9772536 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Comments Trusted DataCore Codegrid Pro solution
Company Name FluxNest QuantumWave
Company Short Name FluxNest
File Description DataCore Codegrid Pro Manager
File Version 50.18.8778.46
Internal Name DataCore Codegrid Pro (x86)
Legal Copyright Copyright © 2018-2021 FluxNest QuantumWave. All rights reserved.
Legal Trademarks DataCore Codegrid Pro is a trademark of FluxNest QuantumWave
Original Filename DataCoreCodegridProUtility-v50.exe
Product Name DataCore Codegrid Pro
Product Short Name DataCoreCodegridPro
Product Version 53.7.3326.61

Digital Signatures

Signer Root Status
FluxNest QuantumWave FluxNest QuantumWave Self Signed

File Traits

  • HighEntropy
  • x86

Block Information

Total Blocks: 109
Potentially Malicious Blocks: 77
Whitelisted Blocks: 28
Unknown Blocks: 4

Visual Map

x 0 ? 0 ? ? 0 0 ? x x x x x x x x x x x x x x x x 0 x x x x x 0 x 0 0 0 x x 0 x x 0 x x x x 0 x x 0 x x 0 x x 0 x x 0 x x 0 x x 0 x x 0 x 0 x x 0 x 0 x x x x x x x x x x x 0 x x 0 x x 0 x x 0 x x x x x x x x x x x 0 1
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Kryptik.ODFB

Trending

Most Viewed

Loading...