Threat Database Trojans HEUR.Native.Trojan.Generic

HEUR.Native.Trojan.Generic

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 9,677
Threat Level: 90 % (High)
Infected Computers: 7,734
First Seen: March 19, 2020
Last Seen: February 18, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: HEUR.Native.Trojan.Generic
Signature status: No Signature

Known Samples

MD5: 0928ef414dba697f40da3994c91d40bd
SHA1: 517be99253902717ff815c4b4458faeb84d36a6c
SHA256: 3D405713CF38DE1A803D7773DD080B35DBCC2A49E3AC42997D575BA4A43A6EDD
File Size: 527.87 KB, 527872 bytes
MD5: 8523535bcf217c79881c8ee29c43172a
SHA1: 5a37435bb1c6bd8d5327afd52777231c21b17f2f
SHA256: 37030C6EA96B5250012E8BC04DE8FD5E6A94208548BFF26D55A59AAA3812A88A
File Size: 331.79 KB, 331785 bytes
MD5: 40fb0d1f3e9edd3fc162787bf5e062d0
SHA1: f11f642538c83ee82387951dabf916c2a18a7b8f
SHA256: 23A2218610CD6E502BAE31AF3237B74E7D536C758CB791278FE0CE26CD3CE15F
File Size: 442.02 KB, 442020 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have resources
  • File doesn't have security information
  • File is 32-bit executable
  • File is 64-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
Show More
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name Microsoft
File Version 1.00
Internal Name
  • TJprojMain
  • Win
Original Filename
  • TJprojMain.exe
  • Win.exe
Product Name
  • Project1
  • Win
Product Version 1.00

File Traits

  • 2+ executable sections
  • big overlay
  • SusSec
  • vb6
  • x86

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtOpenProcessToken
  • ntdll.dll!NtProtectVirtualMemory
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryInformationToken
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtWriteFile
  • ntdll.dll!NtWriteVirtualMemory
Show More
  • win32u.dll!NtUserGetKeyboardLayout
  • win32u.dll!NtUserGetThreadState
Other Suspicious
  • SetWindowsHookEx

Trending

Most Viewed

Loading...