Threat Database Trojans Trojan.Downloader.XC

Trojan.Downloader.XC

By CagedTech in Trojans

Analysis Report

General information

Family Name: Trojan.Downloader.XC
Signature status: No Signature

Known Samples

MD5: 980e7d70bebbce92751c61f40122777b
SHA1: 18c0e41578512c8a8ec22b2a9a652ef9740a873a
SHA256: E5E7462147CA1118B8E0EF7A3E28FC367677DA9D417F104EDDDBF4B9C109F3B9
File Size: 73.73 KB, 73728 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have relocations information
  • File doesn't have security information
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

Windows PE Version Information

Name Value
Company Name Sony DADC Austria AG
File Description SecuROM Launcher
File Version 0.1.0.8
Legal Copyright (c) 2008 Sony DADC Austria AG
Product Name SecuROM Launcher
Product Version 0.1.0.8

File Traits

  • 2+ executable sections
  • x86

Block Information

Total Blocks: 145
Potentially Malicious Blocks: 10
Whitelisted Blocks: 135
Unknown Blocks: 0

Visual Map

x x 0 x x 0 0 1 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 2 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 1 x x x x x x 1 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Downloader.XC

Trending

Most Viewed

Loading...