Threat Database Trojans Trojan.GBot.A

Trojan.GBot.A

By CagedTech in Trojans

Analysis Report

General information

Family Name: Trojan.GBot.A
Signature status: No Signature

Known Samples

MD5: 1af18842a919103218dd528672c3e34c
SHA1: df5d2041a85c44535cdb1a01c306eec029498eaa
SHA256: 06CC40AB14D56C33E6E0CCC4B69BF5A28E69F996D021C9545427D9084C49E467
File Size: 65.54 KB, 65536 bytes
MD5: a7535078e0423384fbd9c7b0fbd59071
SHA1: ce1a3359d72b69796e4f3ae1f2a74f584a4eaa71
SHA256: 0B1485494220306C98984FE3B813E5D8CEC7BC32387FF2FF86B586D85B797215
File Size: 61.44 KB, 61440 bytes
MD5: dbdd901367be26f7dc3e73d463065200
SHA1: 8ddd3b751582d87f877e8f371e3d920a31d0419d
SHA256: 05AA54C992A7A9DF3A89948EC4CEC3DD689F43D4DD5FEFF53A115C184F64A7FF
File Size: 102.40 KB, 102400 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name
  • Microsoft Corporation
File Description
  • ASD
File Version
  • 4.90.3000
  • 4.10.1998
Internal Name
  • ASD
Legal Copyright
  • Copyright (C) Microsoft Corp. 1998
Original Filename
  • ASD.EXE
Product Name
  • Microsoft(R) Windows(R) Operating System
  • Système d'exploitation Microsoft(R) Windows(R)
  • Système d'exploitation Microsoft(R) Windows(R) Millennium
Product Version
  • 4.90.3000
  • 4.10.1998

File Traits

  • 2+ executable sections
  • x86

Block Information

Total Blocks: 77
Potentially Malicious Blocks: 29
Whitelisted Blocks: 48
Unknown Blocks: 0

Visual Map

x x x 0 x x x x x x x x x x x x x x x x x x x x x x x x x x 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • GBot.A

Trending

Most Viewed

Loading...