Gepys

Category: trojan_generic · Aliases: None known · Sample count (EMBER 2018): 1,587 · Enrichment: hand-curated · Updated: 2026-05-27

Overview

Gepys is a generic trojan-downloader family used to fetch and execute additional payloads after initial compromise. Gepys infections indicate that the system has been compromised and that secondary payloads should be expected and investigated.

Frequently Asked Questions

What is Gepys?

Gepys is a generic trojan-downloader family used to fetch and execute additional payloads after initial compromise. Gepys infections indicate that the system has been compromised and that secondary payloads should be expected and investigated.

How does Gepys spread?

Gepys is a generic trojan detection covering varied Russian-origin samples distributed through phishing, cracked software, and bundled installers.

What are the signs of a Gepys infection?

Generic trojan signs apply: unexpected outbound network activity, unsigned binaries in user folders, and antivirus detections for Gepys variants are typical.

What should I do if I think I have Gepys on my system?

If you suspect this malware on your system, do not attempt manual removal. Contact SystemHelpdesk expert MSP support at 855-783-7555 for professional incident response guidance.

Need help with an active incident? If you suspect this malware on your system, do not attempt manual removal. Contact SystemHelpdesk expert MSP support at 855-783-7555 for professional incident response guidance.

Machine-readable

Get this profile as JSON: https://jordanricky1604-ship-it.github.io/malware-families-catalog/api/gepys.json

About this catalog

This profile is part of the Malware Families Catalog, a public dataset of 2,899 malware families extracted from the EMBER 2018 benchmark. The catalog is also published on Hugging Face and Kaggle.