Threat Database Trojans Trojan.Agent.BKU

Trojan.Agent.BKU

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 15,573
Threat Level: 80 % (High)
Infected Computers: 106
First Seen: January 7, 2023
Last Seen: February 23, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Agent.BKU
Signature status: No Signature

Known Samples

MD5: 838ea4c3427c2840f5200e40459c5d44
SHA1: 87f2973441e76ac51a91d5ce054e7a8ba3ffae9d
File Size: 9.23 MB, 9232096 bytes
MD5: eafc2fcd8417aeaf99d1c91f046b0058
SHA1: 373d2e8f3729d123ddce3df4093e71ac06175132
SHA256: B56CC7F687E8A27B6192C5B063A0DA2308A1F97438A06CCDD66250B7B387C540
File Size: 9.23 MB, 9232096 bytes
MD5: 1956df991b39b6b25aa27c83c9dc2300
SHA1: 58bd08c5a88dd6af2f8f4d50477834050f339728
SHA256: 8435CA1C9B28F2B7564BA54B8C5CA60D7CBA8AC350C579842285379950B649E8
File Size: 4.19 MB, 4187904 bytes
MD5: ff80b07a0dfd29e72acb3629c5f8b661
SHA1: c4387ac61e6637958479e6a7c0bff1a45a30c705
SHA256: BABEBFEE3B478FF470E5FAC8DDE8F8C320F9768E1BEF10F09A02BF2D1607CA0D
File Size: 4.24 MB, 4239616 bytes
MD5: 44c4f25bab0808abbd2ef733d4d38f73
SHA1: d1cef4d910f2533712d64e04ca22a67c9a48a1a3
SHA256: 210BDC68552821D8207637AB12B481DEB41C454D0B961E70B4CC1C0BC038F8EF
File Size: 425.50 KB, 425504 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is 64-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name
  • Evernote Corporation
  • Game Dev
  • Rocket.Chat
  • Sudoku Demo
File Description
  • book
  • demo
  • Evernote
  • UnOfficial OSX, Windows, and Linux Desktop Clients for Rocket.Chat
File Version
  • 10.16.7.2732
  • 3.1.1.0
  • 1.0.0.0
Internal Name
  • Evernote
  • robot_demo
Legal Copyright
  • Copyright \xA9 2021 Evernote Corporation
  • Copyright © 2020 Rocket.Chat Support
  • Game Dev
  • Sudoku Demo
Original Filename robot_demo..exe
Product Name
  • book
  • demo
  • Evernote
  • Rocket.Chat
Product Version
  • 10.16.7.2732
  • 3.1.1.0
  • 1.0.0.0

File Traits

  • big overlay
  • HighEntropy
  • x64

Block Information

Total Blocks: 143
Potentially Malicious Blocks: 9
Whitelisted Blocks: 124
Unknown Blocks: 10

Visual Map

x x 0 x x 0 0 0 0 ? 0 ? 0 ? ? ? 0 ? 0 ? x x 0 0 0 0 0 0 x 0 0 0 ? 0 0 x x ? 0 0 ? 0 0 0 0 0 0 0 0 0 1 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.BKU

Related Posts

Trending

Most Viewed

Loading...