Threat Database Trojans Trojan.Rozena.GI

Trojan.Rozena.GI

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 18,670
Threat Level: 80 % (High)
Infected Computers: 32
First Seen: January 2, 2024
Last Seen: March 29, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.Rozena.GI
Signature status: No Signature

Known Samples

MD5: a378b7bfb491e3e281a4b6814358f000
SHA1: e60c7962dadb2a4275819283e363b231cab6c416
File Size: 38.40 KB, 38400 bytes
MD5: 1d8b70421101fbd9dc9713b50c4cd699
SHA1: 9095c61f1615403b356622dcc4dd5c714632ab9f
SHA256: E6A45DE2330A7C2CC109F1253B24DEF94BC803AFBCD6D14EAC6050930526BA80
File Size: 38.91 KB, 38912 bytes
MD5: 2417b0dd0050830dc1800b6c6cfe4a3e
SHA1: 91bc41c86f78aa0959be3513d85673bf5ab2e2e7
SHA256: E7B333FCC15A1F2B303F6E6B59AEDBF20C2202EB17903E7A189EF19AF31CBB27
File Size: 40.45 KB, 40448 bytes
MD5: 68e014230b05d22019d5f51cb780627d
SHA1: 277490d2c5df5bf216aa2f0e902a708b6e56cdd8
SHA256: 6534D369F41F1DBDBADA6DF74BBBDDD18622596112282F1A22731936EBD596F6
File Size: 40.96 KB, 40960 bytes
MD5: 1d7380eb6f5ecc85e9321afd4fc375b6
SHA1: 20cb5d53668c1fceb31f16536ae0934c1c5d3667
SHA256: CFF4DE9DE7B677C650E147F0443DA6737BD9744A8BEAE83ED0501C4F66244BD3
File Size: 38.40 KB, 38400 bytes
Show More
MD5: ed59a12b29eb9a1c2f9ce5e89dc9e839
SHA1: 7c460d332319282483859001d09fe08a1ea45ca0
SHA256: 1C982E7BDB5AC6403F98E3E7ADBBBEC000B32C6522123C2CA77E3985B9C8701B
File Size: 38.40 KB, 38400 bytes
MD5: 9dfd95e20facc4666b4ad880f793d349
SHA1: 4613723693071eb1a52bed65e3d85076d38b377e
SHA256: 7146AA01E769861B2E00FBF0C3A006E8BE27B1299441557893D08EB8ECA4357D
File Size: 38.91 KB, 38912 bytes
MD5: 13072b2c0f53dc62a8183b2e995be230
SHA1: 61862d52dc6a56c76f664a58d9833892c93fd081
SHA256: B7803E53243C9D96A6F0694A012D734CA1FE92E4A82B86C4A3203932EC670938
File Size: 38.91 KB, 38912 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • 2+ executable sections
  • JMC
  • No Version Info
  • x86

Block Information

Total Blocks: 102
Potentially Malicious Blocks: 1
Whitelisted Blocks: 100
Unknown Blocks: 1

Visual Map

0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.FDS
  • Agent.FGT
  • Agent.FYH
  • Agent.XCO
  • Agent.XSE
Show More
  • BadJoke.XA
  • Injector.YF
  • KillMBR.XB
  • Rozena.GI
  • Rozena.HGA
  • Rozena.XAB

Trending

Most Viewed

Loading...