Threat Database Trojans Trojan.MSIL.Downloader.AGC

Trojan.MSIL.Downloader.AGC

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 20,916
Threat Level: 80 % (High)
Infected Computers: 8
First Seen: September 4, 2022
Last Seen: March 6, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.MSIL.Downloader.AGC
Signature status: No Signature

Known Samples

MD5: 6bc2ac72b99b2df3817487398f0375e8
SHA1: 7bdb244bc48321d788c3ef06ba8506752e58cc86
SHA256: B121E0EA8C4774F83638C4BDFD1C7C59EC3237F5E1C8BE1612228FFCCE954BB4
File Size: 2.33 MB, 2325504 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is .NET application
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Assembly Version 24.0.0.0
Comments BUSINESS SENDER V.24 BY TIGER VIKRAM
Company Name Tiger Vikram
File Description BUSINESS SENDER V.24 BY TIGER VIKRAM
File Version 24.0.0.0
Internal Name BUSINESS SENDER V.24 BY TIGER VIKRAM.exe
Legal Copyright Copyright © 2024
Original Filename BUSINESS SENDER V.24 BY TIGER VIKRAM.exe
Product Name BUSINESS SENDER V.24 BY TIGER VIKRAM
Product Version 24.0.0.0

File Traits

  • .NET
  • NewLateBinding
  • RijndaelManaged
  • x86

Block Information

Total Blocks: 1,346
Potentially Malicious Blocks: 430
Whitelisted Blocks: 886
Unknown Blocks: 30

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x 0 x x x x x 0 x 0 0 0 0 x x 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x x x x x x x x 0 x 0 0 x 0 ? 0 0 0 0 0 0 0 x ? x x x ? ? x ? 0 x 0 0 0 x 0 0 0 0 x x x 0 0 x x x x x x x 0 0 x 0 0 0 0 x x x 0 0 0 0 0 0 x 0 0 x 0 0 x x x 0 0 x 0 0 0 x x x x x x x x 0 0 0 x 0 0 x x 0 x x 0 0 ? 0 0 0 0 0 x 0 x 0 0 0 0 ? 0 0 0 0 x 0 0 0 0 x 0 0 x 0 0 0 ? 0 0 0 x 0 0 0 ? 0 0 0 0 ? ? 0 0 x 0 0 0 x x 0 0 0 x 0 0 0 0 0 x x x 0 x x 0 0 x 0 0 0 0 0 x x x x x 0 0 x 0 0 x x x 0 0 x 0 0 x 0 0 x 0 0 0 0 0 0 0 x x x x x x x 0 0 x 0 0 x 0 0 0 x x x x x x 0 x x 0 0 0 0 0 0 0 0 x 0 x x x x 0 x x x x x x x x x x x x x x 0 x x x 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 x x x x x 0 0 0 0 0 x x 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 x x x x x x 0 ? ? x x 0 x 0 x x x x x x x x 0 x 0 x x 0 0 0 0 0 0 0 ? x x ? ? x 0 x 0 0 x x x 0 x 0 0 x x x x 0 x 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x x x x x x x x x x x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x 0 0 0 x x x 0 x x 0 0 x 0 0 0 0 0 0 0 0 0 x x x x x x x x x x x x 0 0 x 0 0 x x 0 0 0 0 0 x 0 0 x 0 0 0 x x x 0 0 x 0 0 0 x x x x x 0 x 0 0 x 0 0 x 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 x x x x x x 0 x x x x 0 x 0 x x x x x x x x x x 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x ? x x x x x x x x 0 0 x 0 0 x 0 0 ? 0 0 0 0 0 0 0 0 x x 0 x 0 0 0 x 0 0 0 0 0 0 0 0 x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 x x x x x x x x ? 0 0 0 0 x 0 0 0 0 0 0 0 x 0 0 0 0 x x 0 x ? 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 x x x 0 x ? x x x ? x x x 0 0 0 x x x x x x 0 x 0 x x x x 0 x 0 x x x x x 0 x 0 x ? 0 x x 0 x x x x x x x x x x x 0 0 x x 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 x x x 0 x 0 0 x 0 0 0 x x 0 0 ? 0 0 x x x x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 ? x x x ? x x x x x x 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 x x x x 0 0 0 x 0 0 0 0 0 0 0 x x x x x x 0 0 x 0 0 0 0 0 0 x x x 0 x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x x x x x x x x x x x x x x x 0 0 x x x x 0 x x 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • MSIL.Downloader.AGC

Windows API Usage

Category API
User Data Access
  • GetComputerNameEx
  • GetUserDefaultLocaleName
  • GetUserObjectInformation
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation
Encryption Used
  • BCryptOpenAlgorithmProvider

Trending

Most Viewed

Loading...