Threat Database Trojans Trojan.Injector.JOC

Trojan.Injector.JOC

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 6,439
Threat Level: 80 % (High)
Infected Computers: 28
First Seen: December 18, 2025
Last Seen: April 24, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Injector.JOC
Signature status: Self Signed

Known Samples

MD5: f6b9eefe4cb9b85a269155104063c583
SHA1: ba6df01bde8bf6f597a370de880b8af4d6f186db
SHA256: 6F7E92F5A8BA51936E4427C7A31B6F38F431C1547FBA55C78001FD88EF041A4F
File Size: 4.83 MB, 4830232 bytes
MD5: 264f73db42ff5f7b7d0ddb009204b455
SHA1: 7e2f867d791700e15abe959d68b6fc5b5e301c25
SHA256: 12D6BC86581FCC2CB5D2371EC9DAC5269CCB8D1EAADF0B6E8B286AF389B8FBC8
File Size: 569.65 KB, 569648 bytes
MD5: 379f8617e3a4bac75967865fd515e16d
SHA1: 5749dc730db3da44b692fe65cb01bbc7861ea612
SHA256: 8EA0A4E1EBAA2134DBF13284DB36B0EDF8FFB728C99D3F2EA00E481B64AE84A5
File Size: 654.09 KB, 654088 bytes
MD5: 07841339c7e0b56dcbb8b6c9f217c0da
SHA1: 15d456fb4a507f73280acd7b07509bf6c77e1d1f
SHA256: 445AE1255969696CFEE5823F3D64D4C0FB9E81C636EDF5FE71BA503B8CA58D14
File Size: 756.08 KB, 756080 bytes
MD5: 5e4e7436d6119a120aefee3b21e33971
SHA1: 551642f7075c8ae66d8acaf7ed6c883ed3350b62
SHA256: 369462CB7AB83C14F977A8EE8E921344959113DC7F56D01FEAF849D6DBA4693F
File Size: 726.38 KB, 726376 bytes
Show More
MD5: c63049c6af9420698b8dd7b6f778c25e
SHA1: 6b56f1e28688f89ae7c37c60ae63223d516463c1
SHA256: E3B98DB22BA73554A6B6E09437BE6F9104E625E011A024458C9D75B724141CBA
File Size: 4.86 MB, 4855808 bytes
MD5: 17b98834950098c86391ca25b88ae90f
SHA1: cda2262f514222ea3224e32d2e98e259aacea615
SHA256: BBF44F6AAF0F46088607589491844F3776C492B4B69203FEAB23FCC5A8713718
File Size: 666.46 KB, 666456 bytes
MD5: bae00642c809512d5a349c95ea7e9d35
SHA1: 622efd2e6ff1dd652ace557a370b35376ebb025c
SHA256: 2D5F7E2338ADE5AE68DC82758126A60FDCECD36D44D08ADED3F92DF35FD7BDFF
File Size: 616.50 KB, 616504 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File has exports table
  • File is 64-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Show More

Windows PE Version Information

Name Value
Comments
  • Based on GPU acceleration architecture
  • Built with Parallel computing framework
  • Enhanced with Distributed systems capabilities
  • Includes DirectX acceleration
  • Optimized for Advanced AI performance
  • Optimized for QT performance
  • Powered by Distributed systems technology
  • Zero Trust The Modular Converter architecture
Company Name
  • Becker - Rogahn
  • DynamicEdge Intelligent
  • Hamill - Becker
  • Nienow - Deckow
  • Oberbrunner Inc B.V.
  • Schuppe - Fahey
  • Steuber and Sons
  • White - Wiza S.R.L.
  • Will Group
  • Wisozk - Keebler
Company Short Name DynamicEdge
File Description
  • ADP system Enterprise Monitor
  • calculateer Deluxe Optimizer
  • online program Deluxe Manager
  • Practical Cotton Chips Standard Toolkit
  • SAS panel Professional System
  • SDD array Master Controller
  • synthesizing Bouvet Island (Bouvetoya) - Dutch Version
  • synthesizing Bouvet Island (Bouvetoya) - Italian Version
  • synthesizing Bouvet Island (Bouvetoya) Professional Analyzer
  • The Modular Converter Starter
File Version
  • 37.5.9123.70
  • 6.6.1335
  • 5.20.1204
  • 5.13
  • 4.10.2820.804
  • 3.16.338
  • 3.10.7948.735
  • 3.0.6146.912
Internal Name
  • ADPsystem.exe
  • calculateer_tool.exe
  • onlineprogram_service.exe
  • practicalcottonchips.exe
  • SASpanel.exe
  • SDDarray_service.exe
  • synthesizingBouvetIsland(Bouvetoya)_tool.exe
  • The Modular Converter (x86)
Legal Copyright
  • Copyright (c) 2009 Nienow - Deckow
  • Copyright (c) 2013 Will Group
  • Copyright (c) 2021 Steuber and Sons
  • Copyright © 2011-2017 DynamicEdge Intelligent. All rights reserved.
  • Copyright © 2015 Schuppe - Fahey. All rights reserved.
  • Copyright © 2016 Wisozk - Keebler. All rights reserved.
  • © 2007 Becker - Rogahn. All rights reserved.
  • © 2015 Hamill - Becker. All rights reserved.
Legal Trademarks
  • ADP system® is a registered trademark of Hamill - Becker
  • All trademarks are property of their respective owners. Practical Cotton Chips is a trademark of Becker - Rogahn.
  • All trademarks are property of their respective owners. SDD array is a trademark of Steuber and Sons.
  • calculateer and the calculateer logo are trademarks of Wisozk - Keebler
  • DynamicEdge Intelligent proprietary technology
  • online program is a registered trademark of Schuppe - Fahey in the US and other countries
  • SAS panel is a registered trademark of Will Group in the US and other countries
  • synthesizing Bouvet Island (Bouvetoya) and the synthesizing Bouvet Island (Bouvetoya) logo are trademarks of Nienow - Deckow
Original Filename
  • becker-practicalcottonchips.exe
  • calculateer_client.exe
  • hamill-adpsystem.exe
  • onlineprogram_service.exe
  • SASpanel.exe
  • sddarray_1017.exe
  • synthesizingbouvetisland(bouvetoya)_9129.exe
  • TheModularConverterThreadPool-v37.exe
Product Name
  • ADP system
  • calculateer
  • online program
  • Practical Cotton Chips
  • SAS panel
  • SDD array
  • synthesizing Bouvet Island (Bouvetoya)
  • The Modular Converter
Product Short Name TheModularConverter
Product Version
  • 77.13.2829.27
  • 6.6.1335
  • 5.20.1204
  • 5.13
  • 4.10.2820.804
  • 3.16.338
  • 3.10.7948.735
  • 3.0.6146.912

Digital Signatures

Signer Root Status
Becker - Rogahn Becker - Rogahn Intermediate CA 2 Self Signed
DynamicEdge Intelligent DynamicEdge Intelligent Self Signed
Hamill - Becker Hamill - Becker Intermediate CA 3 Self Signed
Nienow - Deckow Nienow - Deckow Intermediate CA 2 Self Signed
Schuppe - Fahey Schuppe - Fahey Intermediate CA 2 Self Signed
Show More
Steuber and Sons Steuber and Sons Intermediate CA 2 Self Signed
Will Group Will Group Intermediate CA 2 Self Signed

File Traits

  • HighEntropy
  • x64

Block Information

Total Blocks: 48
Potentially Malicious Blocks: 36
Whitelisted Blocks: 11
Unknown Blocks: 1

Visual Map

x x x ? x x x x x x x x 0 x 0 x x 0 0 x 0 x x 0 x x 0 0 0 x x x x x x x x x x 0 x x 0 x x x x x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtClose
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtOpenKey
  • ntdll.dll!NtQueryInformationProcess
  • ntdll.dll!NtQueryInformationToken
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationProcess
  • ntdll.dll!NtSetInformationVirtualMemory
  • ntdll.dll!NtSetInformationWorkerFactory
Show More
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtWaitLowEventPair
  • ntdll.dll!NtWriteFile
  • UNKNOWN

Trending

Most Viewed

Loading...