Threat Database Trojans Trojan.Downloader.CN

Trojan.Downloader.CN

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 20,603
Threat Level: 80 % (High)
Infected Computers: 164
First Seen: November 6, 2021
Last Seen: February 2, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Downloader.CN
Signature status: Self Signed

Known Samples

MD5: c0b3b44c311c540947d60f58d5063b2f
SHA1: cbc4bce38d6a9afca420ea0d093b394c3ceb6271
SHA256: BFFCB094E24C891EC242A90D49017514F14E64D4895805A58233E0B98E362AA1
File Size: 7.75 MB, 7749368 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Description Zapya Install Program
File Version 1.0.0.0
Legal Copyright Copyright©2011-2014 DewMobile,Inc.
Legal Trademarks Zapya,kuaiya,快牙
Product Name Zapya-en
Product Version 1.7.0.0

Digital Signatures

Signer Root Status
DewMobile USA , Inc. COMODO RSA Code Signing CA Self Signed

File Traits

  • 2+ executable sections
  • HighEntropy
  • Installer Version
  • x86

Block Information

Total Blocks: 439
Potentially Malicious Blocks: 17
Whitelisted Blocks: 422
Unknown Blocks: 0

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x 0 x 0 x x x x x x x 0 x 0 0 x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Files Modified

File Attributes
c:\users\user\appdata\local\temp\richedit1 Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_common_checkbox_default.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_common_checkbox_selected.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_common_input_frame.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_common_input_modify_default.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_common_input_modify_pressed.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bg.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bg2.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bg3.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bt_imsetup_default.png Generic Read,Write Data,Write Attributes,Write extended,Append data
Show More
c:\users\user\appdata\local\temp\zapya_install_bt_imsetup_focused.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bt_normal.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bt_pressed.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bt_return_default.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_bt_return_focused.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_close.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_close_pressed.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_confirm_default.png.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_confirm_pressed.png.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_launch_normal_completed.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_launch_pressed_completed.png Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\zapya_install_progress.jpg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\{5beb75bb-d08f-4258-b2c8-7f7ed3cbf5ce}\is\1361.xs Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\{5beb75bb-d08f-4258-b2c8-7f7ed3cbf5ce}\is\1506.xs Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\{5beb75bb-d08f-4258-b2c8-7f7ed3cbf5ce}\isshell.dat Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\{5beb75bb-d08f-4258-b2c8-7f7ed3cbf5ce}\res\1525.jpg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\{5beb75bb-d08f-4258-b2c8-7f7ed3cbf5ce}\res\7805.jpg Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\appdata\local\temp\{98d9c9dc-2e58-4d24-942a-e4ad7a3135b4}.dat Generic Read,Write Data,Write Attributes,Write extended,Append data

Trending

Most Viewed

Loading...