Threat Database Backdoors Backdoor.Agent.GA

Backdoor.Agent.GA

By CagedTech in Backdoors

Aliases

15 security vendors flagged this file as malicious.

Antivirus Vendor Detection
Symantec W32.Allim
Sunbelt Backdoor.Agent.GA
Sophos W32/Oscabot-C
Panda W32/Oscarbot.F.worm
Microsoft Backdoor:Win32/Agent.GA
McAfee W32/Opanki.worm
Fortinet W32/Agent.JN!tr.bdr
F-Secure Backdoor.Win32.Agent.jn
eTrust-Vet Win32/Trykid.E
eSafe Win32.Agent.jn
ClamAV Trojan.Downloader.Agent-138
CAT-QuickHeal Backdoor.Agent.jn
BitDefender Win32.Worm.Opanki.J
AVG BackDoor.Agent.8.G
Avast Win32:Trojano-1329

File System Details

Backdoor.Agent.GA may create the following file(s):
# File Name MD5 Detections
1. userint32.exe 4125b1252276bf765ef465b9766c9b94 0

Analysis Report

General information

Family Name: Trojan.Downloader.Agent.GA
Signature status: No Signature

Known Samples

MD5: 93702a1a222ebf0d986d1b2f7de1fe6c
SHA1: 9a14f0e4fcae40582c9d25a7fce70c013f408d46
SHA256: C0DB07DB792DBF0E6009BBAC1323681770AE36D6A57BB32BD880DB7D86DA6F0F
File Size: 538.36 KB, 538358 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Version 1.00
Internal Name TJprojMain
Original Filename TJprojMain.exe
Product Name Project1
Product Version 1.00

File Traits

  • Default Version Info
  • x86

Windows API Usage

Category API
Other Suspicious
  • SetWindowsHookEx

Trending

Most Viewed

Loading...