Threat Database Trojans Trojan.Kryptik.Gen.EYO

Trojan.Kryptik.Gen.EYO

By CagedTech in Trojans

Analysis Report

General information

Family Name: Trojan.Kryptik.Gen.EYO
Signature status: Self Signed

Known Samples

MD5: f18716a534f894a79efc719cff7293d9
SHA1: afc88da362832287ef385f765c35c43b6f9183cc
SHA256: 795C58E3DBF18A4541913768EB4ADC9D7645E2EADD29B69D8F93FA54D14897AF
File Size: 677.66 KB, 677664 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File has exports table
  • File is 64-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Comments Based on CUDA architecture
Company Name Hackett Group
File Description GB array Ultimate Gateway
File Version 2.3.259
Internal Name GBarray_tool.exe
Legal Copyright Copyright (c) 2025 Hackett Group
Legal Trademarks All trademarks are property of their respective owners. GB array is a trademark of Hackett Group.
Original Filename GBarray_client.exe
Product Name GB array
Product Version 2.3.259

Digital Signatures

Signer Root Status
Hackett Group Hackett Group Intermediate CA 2 Self Signed

File Traits

  • HighEntropy
  • x64

Block Information

Total Blocks: 48
Potentially Malicious Blocks: 25
Whitelisted Blocks: 9
Unknown Blocks: 14

Visual Map

x 0 ? ? ? ? ? ? ? ? ? ? ? ? x x x x x x x 0 x x x x 0 0 0 ? ? x x x x x x 0 x x x x 0 x 0 0 x x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtQueryInformationProcess
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationProcess
  • ntdll.dll!NtSetInformationWorkerFactory
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtWaitLowEventPair
  • ntdll.dll!NtWriteFile
  • UNKNOWN

Trending

Most Viewed

Loading...