Threat Database Trojans Trojan.Babar.V

Trojan.Babar.V

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 18,918
Threat Level: 80 % (High)
Infected Computers: 5
First Seen: September 21, 2024
Last Seen: March 21, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Babar.V
Signature status: No Signature

Known Samples

MD5: 128159599842efc2b29d179da09ea0b2
SHA1: 998bac04b3df18264880836b4bd39cbff988ef00
SHA256: 27415D62086018470B4E6CBBA2591A628A5BED2E0D3ED77108C11908CF81DA9D
File Size: 923.65 KB, 923648 bytes
MD5: fd72f8ecee354a648640ef222fcc541f
SHA1: b02dff326503f15cae4ce17b4f2cc342cd45def9
SHA256: 1FB0D28A0BD1EE8D285E236AC6CCE7FA9575BF387A7B8BDF076F826F78297568
File Size: 2.76 MB, 2755082 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Comments This installation was built with Inno Setup.
Company Name
  • LuMoraes
  • TODO: <Nome società>
File Description
  • DJRODEIO - O MAIS COMPLETO SISTEMA PARA RODEIOS Setup
  • KeyManager
File Version 1.0.0.1
Internal Name KeyManager.exe
Legal Copyright
  • LuMoraes
  • TODO: (c) <Nome società>. Tutti i diritti riservati.
Original Filename KeyManager.exe
Product Name
  • DJRODEIO - O MAIS COMPLETO SISTEMA PARA RODEIOS
  • TODO: <Nome prodotto>
Product Version 1.0.0.1

File Traits

  • 2+ executable sections
  • Default Version Info
  • HighEntropy
  • No Version Info
  • WriteProcessMemory
  • x86

Files Modified

File Attributes
c:\users\user\appdata\local\temp\is-es3s6.tmp\b02dff326503f15cae4ce17b4f2cc342cd45def9_0002755082.tmp Generic Write,Read Attributes

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation
Process Manipulation Evasion
  • NtUnmapViewOfSection
Process Shell Execute
  • CreateProcess

Shell Command Execution

"C:\Users\Ugjfzbuu\AppData\Local\Temp\is-ES3S6.tmp\b02dff326503f15cae4ce17b4f2cc342cd45def9_0002755082.tmp" /SL5="$13017E,2518126,53248,c:\users\user\downloads\b02dff326503f15cae4ce17b4f2cc342cd45def9_0002755082"

Trending

Most Viewed

Loading...