Hacktool.FaceInjector.A
Threat Scorecard
EnigmaSoft Threat Scorecard
EnigmaSoft Threat Scorecards are assessment reports for different malware threats which have been collected and analyzed by our research team. EnigmaSoft Threat Scorecards evaluate and rank threats using several metrics including real-world and potential risk factors, trends, frequency, prevalence, and persistence. EnigmaSoft Threat Scorecards are updated regularly based on our research data and metrics and are useful for a wide range of computer users, from end users seeking solutions to remove malware from their systems to security experts analyzing threats.
EnigmaSoft Threat Scorecards display a variety of useful information, including:
Popularity Rank: The ranking of a particular threat in EnigmaSoft’s Threat Database.
Severity Level: The determined severity level of an object, represented numerically, based on our risk modeling process and research, as explained in our Threat Assessment Criteria.
Infected Computers: The number of confirmed and suspected cases of a particular threat detected on infected computers as reported by SpyHunter.
See also Threat Assessment Criteria.
| Popularity Rank: | 15,425 |
| Threat Level: | 50 % (Medium) |
| Infected Computers: | 713 |
| First Seen: | February 2, 2023 |
| Last Seen: | March 29, 2026 |
| OS(es) Affected: | Windows |
Table of Contents
Analysis Report
General information
| Family Name: | Hacktool.FaceInjector.A |
|---|---|
| Signature status: | No Signature |
Known Samples
Known Samples
This section lists other file samples believed to be associated with this family.|
MD5:
f66cff221d7ebb82d7fcb3787dcaf748
SHA1:
42eec6621f34b0f1f0517e811feb6309f5d13875
File Size:
135.17 KB, 135168 bytes
|
|
MD5:
12948eaeec0c21eeec991b67c0207962
SHA1:
da27364a2a66c768b1f9763b67e5e220706fa5e8
File Size:
145.41 KB, 145408 bytes
|
|
MD5:
b271ca0a25d9d2d844214886a4b9c657
SHA1:
045c6ad33750a3bca7f109941e1177b43b8dabfe
File Size:
459.26 KB, 459264 bytes
|
|
MD5:
014d9c070d3632af5b5b02f42c309e3d
SHA1:
c381c82c8b775f2ca7215a9ee6c71b1dad5042ba
File Size:
146.94 KB, 146944 bytes
|
|
MD5:
c01ea282acf00cdb5f6cc9244ee8ba76
SHA1:
bb014bb31376bb512f4e84510285c909746848cb
File Size:
143.36 KB, 143360 bytes
|
Show More
|
MD5:
4268baa41ca41442667c7aeafdb192d7
SHA1:
b6262eeaf280132f7b384e2634e34f42a0fc9592
File Size:
152.06 KB, 152064 bytes
|
|
MD5:
052cf9f6707b8dfcf7adf2f7762746a3
SHA1:
71d4e3045ac36d28480ccdc42e238dee16e6bded
File Size:
116.74 KB, 116736 bytes
|
|
MD5:
781a1ca4a28e7db0e99f18b00ad81af3
SHA1:
653c5fa89653ac97feba68c82a60e80ed0b19c4a
File Size:
129.54 KB, 129536 bytes
|
|
MD5:
ac50bf12e5d840985e7dda776b83469b
SHA1:
5528b4cb6d1e1987877d18a818f45f2a0eb2e83f
File Size:
181.76 KB, 181760 bytes
|
|
MD5:
a2b472b0f076d90b465e99b4356f11e6
SHA1:
8d4f1f7c309c818f07151a53fd2073d7bbd358aa
File Size:
152.06 KB, 152064 bytes
|
|
MD5:
318d8de24b3c979bebce09ec97431762
SHA1:
a35fb662f0274126564aed2dc130d351c09298da
SHA256:
CF74988AD798CE420423622DD0A2F2EBE6966520BA97CFE6F4C561066BC218D7
File Size:
112.64 KB, 112640 bytes
|
|
MD5:
86c424986755ec7e174fb80469723c0e
SHA1:
f495007040e8d1068617d15abf8a616567babb44
SHA256:
3F27799DB01FEC9D3A5965E36B0FAF73714371898E70FE50D7A7A6C16BBE68BA
File Size:
161.28 KB, 161280 bytes
|
|
MD5:
480f1942bcdd32d8b678e9c19ecc6104
SHA1:
21b6597e00d0a7cc50a9009b61aaa273872eb1ba
SHA256:
B70FC56B90FBFDDF0B621E73C182F303E7332A2B879294E74EDB314C3CA2FEA6
File Size:
267.78 KB, 267776 bytes
|
|
MD5:
fed70d5f07bbe0d2f2ff087fd6b6e319
SHA1:
29de256a3abc7fdf04a707cf9c65a2ba27ed9b99
SHA256:
5CF4F5A51996D0BDD6566B349375F247E06CC303D556B158A267019D89E8D2B2
File Size:
171.52 KB, 171520 bytes
|
|
MD5:
0e956405aeca5316e2a3bc680c85e386
SHA1:
0eaffce876a6d7fc283234ce67b2ba9669a3263b
SHA256:
ECD8D7BC3ABEAFC317DD76FB8323E6A4352AE29E830398220E007EE029E76179
File Size:
173.57 KB, 173568 bytes
|
|
MD5:
afd74d333c0ca7fcbaa6912f26883273
SHA1:
74fe3e4cf08b7c598bce5f7a2ac6d74abc8d08f6
SHA256:
F165C28F2A4EA9D6831909D8880D407AEED0CD584E22426E8F9C1831E4B1802C
File Size:
357.38 KB, 357376 bytes
|
|
MD5:
fb92b8660c3d4802f316d09434d3881e
SHA1:
cc4c50d9870a1cfd7bcfd6feda671c8ad05b98ea
SHA256:
7A5FBF8F200B42A6AF4A06FB49583D41DF0504BF7858F20430FA694CE6CACD38
File Size:
126.98 KB, 126976 bytes
|
|
MD5:
bb90efc52605c0e9090f13751e057904
SHA1:
e7d5b1490bece1f595e059c75edede09ce2fdd2c
SHA256:
2F78B6C92EF2DD3271614651C81C399270C1A50D2FFCC01B6E188F8A5488579F
File Size:
134.66 KB, 134656 bytes
|
|
MD5:
a0e32c661c449a882d733f95496fae43
SHA1:
287483c9c7bafaf7e8455ba2c2d26cfe8fc6efea
SHA256:
AFEF8B115E82CC7842338279B4F6F26728673B437943FFB1236C51098BC483F8
File Size:
140.80 KB, 140800 bytes
|
|
MD5:
5af135725e632fa6e4c2891253ff16f4
SHA1:
19521ddc0795ab4a14f1b6e9688c193993128f53
SHA256:
3D0618BA73C948605A0B4855793D9D0138353C4805030222342951A5DA8EF331
File Size:
257.02 KB, 257024 bytes
|
|
MD5:
ffa3171657b4419b8de52574ce500f4b
SHA1:
0999597c7ca8a9c11f5a56c685e6c45e26ab0aa6
SHA256:
AE3BA1825B07056A1109935EEA803D93BA50667115E53DE5B1650CC3F0A004DB
File Size:
136.19 KB, 136192 bytes
|
Windows Portable Executable Attributes
- File doesn't have "Rich" header
- File doesn't have exports table
- File doesn't have security information
- File has TLS information
- File is 64-bit executable
- File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
- File is either console or GUI application
- File is Native application (NOT .NET application)
- File is not packed
- IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
- IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)
File Icons
File Icons
This section displays icon resources found within family samples. Malware often replicates icons commonly associated with legitimate software to mislead users into believing the malware is safe.File Traits
- 2+ executable sections
- GetConsoleWindow
- JMC
- No Version Info
- x64
Block Information
Block Information
During analysis, EnigmaSoft breaks file samples into logical blocks for classification and comparison with other samples. Blocks can be used to generate malware detection rules and to group file samples into families based on shared source code, functionality and other distinguishing attributes and characteristics. This section lists a summary of this block data, as well as its classification by EnigmaSoft. A visual representation of the block data is also displayed, where available.| Total Blocks: | 417 |
|---|---|
| Potentially Malicious Blocks: | 1 |
| Whitelisted Blocks: | 413 |
| Unknown Blocks: | 3 |
Visual Map
? - Unknown Block
x - Potentially Malicious Block
Similar Families
Similar Families
This section lists other families that share similarities with this family, based on EnigmaSoft’s analysis. Many malware families are created from the same malware toolkits and use the same packing and encryption techniques but uniquely extend functionality. Similar families may also share source code, attributes, icons, subcomponents, compromised and/or invalid digital signatures, and network characteristics. Researchers leverage these similarities to rapidly and effectively triage file samples and extend malware detection rules.- Agent.FYH
- Agent.KFF
- Agent.LEC
- Agent.LKE
- Agent.XFM
Show More
- Barys.AF
- Barys.FB
- Bladabindi.JA
- Bladabindi.JBA
- ClipBanker.FDA
- DllInject.GS
- DllInject.LF
- DllInject.TH
- Downloader.Agent.BTIG
- FaceInjector.A
- Gamehack.SBA
- Gamehack.SBE
- HackAgent.X
- Injector.GFDC
- Lsassdump.A
- PPLFault.A
- ReverseShell.XE
- RobloxHack.HH
- Shellcode.BX
- ShellcodeRunner.LU
- ShellcodeRunner.XJ
- Spy.KeyLogger.AUA
- Spy.KeyLogger.AUB
- Spy.KeyLogger.MC
- Trojan.Agent.Gen.AJR
- Trojan.Agent.Gen.AQN
- Trojan.Agent.Gen.HF