Threat Database Trojans Trojan.Kryptik.TS

Trojan.Kryptik.TS

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 5,341
Threat Level: 80 % (High)
Infected Computers: 6,807
First Seen: April 4, 2023
Last Seen: December 8, 2025
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Kryptik.TS
Signature status: Hash Mismatch

Known Samples

MD5: dc1000653c6438a04f878e4f1bcfd919
SHA1: a80e9ea75dbcdc8dfa8fc93e3a89d223f52e96af
SHA256: BC840A6247F64F7BAED96A344D50DD0BDE4CC02D7AC0A3B4C9DC8A4FD54A61E5
File Size: 6.02 MB, 6015280 bytes
MD5: 88f8823af76a745a6f0eb60c614f1452
SHA1: 8c8d64b358a8b1946b702cde3316ec36ac3d26fe
SHA256: 87213387F797A1B353FDA238B4E2BAD4731BA6CF41344F19CBAE8FAE4C1AB4AC
File Size: 5.76 MB, 5761536 bytes
MD5: cd204e7e6c2c31e654df7145bfb1a633
SHA1: 9e668afe4b76784b04f8da78a44e959ed7f30ac5
SHA256: 75C097ED114926137C74057A70D717AF78C36449A17F407E97E9E17A0663847D
File Size: 5.48 MB, 5477144 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have security information
  • File has TLS information
  • File is 64-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name
  • Google Inc.
  • Rufus
File Description
  • Google Chrome
  • Rufus
File Title
  • chrome.exe
  • Rufus
File Version
  • 70,0,3538,110
  • 4,7,2231,0
Legal Copyright
  • Copyright 2017 Google Inc. All rights reserved.
  • © 2011-2025 Pete Batard (GPL v3)
Legal Trademark https://www.gnu.org/licenses/gpl-3.0.html
Product Name
  • Akeo Consulting
  • Google Chrome
Product Version
  • 70,0,3538,110
  • 4,7,2231,0

Digital Signatures

Signer Root Status
Google LLC DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 Hash Mismatch
Akeo Consulting Sectigo Public Code Signing Root R46 Hash Mismatch

File Traits

  • HighEntropy
  • No Version Info
  • x64

Block Information

Total Blocks: 116
Potentially Malicious Blocks: 50
Whitelisted Blocks: 60
Unknown Blocks: 6

Visual Map

0 0 0 0 0 0 0 x ? ? ? 0 ? ? 0 x x x x x x x 0 0 x x x x x x 0 x x x 0 x x x 0 0 0 0 x 0 x 0 x x x x 0 x x 0 0 x x x x x x x x x 0 x 0 x 0 0 x 0 x x x 0 x x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ?
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Kryptik.TS
  • Kryptik.TSA

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtCreateSemaphore
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtProtectVirtualMemory
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationWorkerFactory
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtWriteFile
  • ntdll.dll!NtWriteVirtualMemory
Show More
  • UNKNOWN
  • win32u.dll!NtUserGetKeyboardLayout
  • win32u.dll!NtUserGetThreadState

Trending

Most Viewed

Loading...