Threat Database Trojans Trojan.Downloader.Agent.AI

Trojan.Downloader.Agent.AI

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 23,279
Threat Level: 80 % (High)
Infected Computers: 60
First Seen: January 7, 2013
Last Seen: October 24, 2025
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Downloader.Agent.AI
Signature status: No Signature

Known Samples

MD5: adece35b5321ba34a782dc4aa8d546c9
SHA1: 8024292732770bff5a870688ae5b9c8d65a7716f
SHA256: A6AF0EEF2D0D2186B7CABBAA2461A1CE9F5C9433ED7D4FE735D7E23E2F075341
File Size: 132.18 KB, 132183 bytes
MD5: 708ca8e93b03e66f4dd90253678a30c4
SHA1: 9fefdb752cfb3907259d3609bbb438ce0cac1fc6
SHA256: 3430EDD58952A4E90510369181439EADEC163474C89D4BC0CA8AF60C9AB331C4
File Size: 147.87 KB, 147874 bytes
MD5: ec01930aa81806cc2b6d0060f9bbad10
SHA1: bc0db829ca5c8cfc4b1db99a51a42d9560f76fbb
SHA256: A68F5C4507827F834B13648E3752114E147DBF46BA87B0C0643C67991FC24B65
File Size: 203.10 KB, 203099 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have relocations information
  • File doesn't have security information
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • big overlay
  • HighEntropy
  • No Version Info
  • x86

Block Information

Total Blocks: 279
Potentially Malicious Blocks: 85
Whitelisted Blocks: 194
Unknown Blocks: 0

Visual Map

x x x x 0 x x x x x 0 x x x x x x x 0 0 x x x x x x x x x x 0 x 0 0 x x x x x 0 x 0 x x 0 x x x x 0 x x 0 x x x 0 x x x x x 0 x 0 x x x 0 x x x x x x x x x x 0 0 x x x 0 0 x x 0 0 0 0 x x x x 0 x x x x x x x x x x x 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 1 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Downloader.Agent.AI

Windows API Usage

Category API
Keyboard Access
  • GetAsyncKeyState

Trending

Most Viewed

Loading...