Threat Database Trojans Trojan.SupplyChainAgent.B

Trojan.SupplyChainAgent.B

By CagedTech in Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 11
First Seen: May 28, 2023
Last Seen: August 14, 2025
OS(es) Affected: Windows

The detection of Trojan.SupplyChainAgent.B indicates that your system has been compromised by a potentially malicious threat. This type of threat is generally categorized as a Trojan, which is a broad term for malware that disguises itself as legitimate software. Trojans can have various functions, including data theft, remote access, and malware distribution. It's essential to understand the nature of this threat and take immediate action to remove it from your system.

What Is Trojan.SupplyChainAgent.B?

Trojan.SupplyChainAgent.B is a type of malware that can infiltrate your system through various means, such as exploited vulnerabilities, phishing attacks, or drive-by downloads. The exact nature of this threat is not fully understood without additional context, but it's clear that it poses a significant risk to your system's security and integrity. Trojans like Trojan.SupplyChainAgent.B can be designed to evade detection, making them challenging to identify and remove.

How Trojan.SupplyChainAgent.B Operates

Once Trojan.SupplyChainAgent.B infects your system, it can operate in various ways, depending on its intended purpose. It may attempt to communicate with its command and control servers to receive instructions or transmit stolen data. The malware might also try to download additional payloads or create backdoors for remote access. Understanding the operational mechanisms of Trojan.SupplyChainAgent.B is crucial for developing effective removal strategies.

Symptoms of Infection

Identifying the symptoms of a Trojan.SupplyChainAgent.B infection can be challenging, as it may not always exhibit noticeable signs. However, some common indicators of a Trojan infection include slow system performance, unexpected pop-ups, and unfamiliar programs or icons on your desktop. You may also experience issues with your internet connection or notice that your system is behaving erratically. If you suspect that your system is infected, it's essential to take immediate action to minimize potential damage.

How to Remove Trojan.SupplyChainAgent.B

  1. Boot your system in Safe Mode with Networking to prevent the malware from loading and to allow for internet access. This will make it easier to download and install removal tools.
  2. Download and install a reputable anti-malware tool, such as SpyHunter, and perform a full scan of your system. This will help identify and remove the Trojan.SupplyChainAgent.B malware and any associated files or registry entries.
  3. Uninstall any suspicious programs or applications that you don't recognize or that were installed around the time of the infection. Be cautious when removing programs, as some may be legitimate or required by your system.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings. This will help remove any malicious extensions or add-ons that may be associated with the infection.
  5. Reboot your system and perform another full scan with your anti-malware tool to ensure that the Trojan.SupplyChainAgent.B malware has been completely removed.

Conclusion

Removing Trojan.SupplyChainAgent.B from your system requires careful attention to detail and a thorough understanding of the malware's operational mechanisms. By following the steps outlined above and taking a proactive approach to system security, you can minimize the risk of reinfection and protect your personal data. Remember to always keep your operating system, software, and security tools up to date, and be cautious when interacting with unfamiliar websites or downloading attachments from unknown sources.

Analysis Report

General information

Family Name: Trojan.SupplyChainAgent.B
Signature status: No Signature

Known Samples

MD5: 6320132ca002c4a74e20bd743c7014a7
SHA1: 3bb12eb8ae7317a2738a852a8ccd3d559921364e
SHA256: 72DAC75FC8FF741D86EC465F654FAC73B24C4A595ADF6F8DA52B2ACE6A6E42B5
File Size: 4.76 MB, 4755282 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is .NET application
  • File is 64-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

Windows PE Version Information

Name Value
Assembly Version 2.0.0.0
Comments The client library for ServiceHub, which makes it easy to request and activate services in another process.
Company Name Microsoft
File Description Microsoft.ServiceHub.Client
File Version 2.8.1016.38292
Internal Name Microsoft.ServiceHub.Client.dll
Legal Copyright © Microsoft Corporation. All rights reserved.
Original Filename Microsoft.ServiceHub.Client.dll
Product Name Microsoft.ServiceHub.Client
Product Version 2.8.1016+9495007d7e.RR

File Traits

  • dll
  • HighEntropy
  • x64

Block Information

Total Blocks: 485
Potentially Malicious Blocks: 101
Whitelisted Blocks: 284
Unknown Blocks: 100

Visual Map

0 0 x 0 0 0 0 0 0 0 0 ? 0 0 0 ? 0 0 0 0 ? 0 0 0 0 0 0 0 x 0 0 x 0 0 0 x 0 0 0 x 0 0 ? 0 0 ? 0 x 0 0 x 0 0 0 0 x 0 0 0 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 x x x 0 x 0 0 0 0 0 0 0 0 x 0 x ? 0 0 x 0 0 0 0 0 0 0 0 0 x x 0 0 x x x 0 0 0 0 0 0 0 x 0 x ? 0 0 0 ? 0 0 0 0 0 0 0 ? 0 0 0 0 0 ? 0 ? ? 0 ? ? ? ? ? 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x ? 0 x x x 0 x ? 0 0 x x x x ? ? ? ? ? ? ? x ? x 0 x x x x x x x ? x x x x x x x x x x x 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 x x x x x x 0 x 0 x 0 ? 0 0 0 0 x 0 x x 0 0 x x 0 0 x 0 x 0 0 x x x x x 0 0 0 0 0 0 0 0 0 0 0 x x x x 0 x x x x ? ? 0 ? 0 x x 0 x x ? ? ? 0 0 ? ? ? 0 ? ? ? 0 0 0 0 0 ? ? ? 0 0 0 ? 0 0 0 0 ? ? 0 0 ? 0 ? ? ? 0 0 0 0 0 0 0 0 0 ? 0 0 0 ? ? ? ? ? ? ? 0 ? ? ? ? 0 0 0 0 0 0 0 0 0 0 ? x 0 ? ? x x x 0 x ? ? x x x x x ? ? ? 0 ? 0 ? 0 0 0 0 0 ? 0 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? 0 ? ? ? ? ?
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Windows API Usage

Category API
Syscall Use
  • ntdll.dll!NtAccessCheck
  • ntdll.dll!NtAlpcSendWaitReceivePort
  • ntdll.dll!NtApphelpCacheControl
  • ntdll.dll!NtClose
  • ntdll.dll!NtConnectPort
  • ntdll.dll!NtCreateMutant
  • ntdll.dll!NtCreateSection
  • ntdll.dll!NtDuplicateToken
  • ntdll.dll!NtFreeVirtualMemory
  • ntdll.dll!NtMapViewOfSection
Show More
  • ntdll.dll!NtOpenFile
  • ntdll.dll!NtOpenKey
  • ntdll.dll!NtOpenKeyEx
  • ntdll.dll!NtOpenProcessToken
  • ntdll.dll!NtOpenProcessTokenEx
  • ntdll.dll!NtOpenSection
  • ntdll.dll!NtOpenSemaphore
  • ntdll.dll!NtOpenThreadTokenEx
  • ntdll.dll!NtProtectVirtualMemory
  • ntdll.dll!NtQueryAttributesFile
  • ntdll.dll!NtQueryDebugFilterState
  • ntdll.dll!NtQueryInformationProcess
  • ntdll.dll!NtQueryInformationThread
  • ntdll.dll!NtQueryInformationToken
  • ntdll.dll!NtQueryKey
  • ntdll.dll!NtQueryPerformanceCounter
  • ntdll.dll!NtQuerySecurityAttributesToken
  • ntdll.dll!NtQueryValueKey
  • ntdll.dll!NtQueryVirtualMemory
  • ntdll.dll!NtQueryVolumeInformationFile
  • ntdll.dll!NtQueryWnfStateData
  • ntdll.dll!NtReleaseMutant
  • ntdll.dll!NtReleaseSemaphore
  • ntdll.dll!NtReleaseWorkerFactoryWorker
  • ntdll.dll!NtRequestWaitReplyPort
  • ntdll.dll!NtSetEvent
  • ntdll.dll!NtSetInformationProcess
  • ntdll.dll!NtSetInformationVirtualMemory
  • ntdll.dll!NtSubscribeWnfStateChange
  • ntdll.dll!NtTestAlert
  • ntdll.dll!NtTraceControl
  • ntdll.dll!NtUnmapViewOfSection
  • ntdll.dll!NtUnmapViewOfSectionEx
  • ntdll.dll!NtWaitForSingleObject
  • ntdll.dll!NtWaitLowEventPair
  • ntdll.dll!NtWriteFile
  • ntdll.dll!NtWriteVirtualMemory
  • win32u.dll!NtGdiBitBlt
  • win32u.dll!NtGdiCreateBitmap
  • win32u.dll!NtGdiCreateCompatibleDC
  • win32u.dll!NtGdiCreateDIBitmapInternal
  • win32u.dll!NtGdiCreateSolidBrush
  • win32u.dll!NtGdiDeleteObjectApp
  • win32u.dll!NtGdiExtGetObjectW
  • win32u.dll!NtGdiGetDCforBitmap
  • win32u.dll!NtGdiGetDCObject
  • win32u.dll!NtGdiGetDeviceCaps
  • win32u.dll!NtGdiRestoreDC
  • win32u.dll!NtGdiSaveDC
  • win32u.dll!NtGdiSelectBitmap
  • win32u.dll!NtGdiSetDIBitsToDeviceInternal
  • win32u.dll!NtUserBuildHwndList
  • win32u.dll!NtUserCallTwoParam
  • win32u.dll!NtUserCreateEmptyCursorObject
  • win32u.dll!NtUserCreateWindowEx
  • win32u.dll!NtUserDestroyWindow
  • win32u.dll!NtUserFindExistingCursorIcon
  • win32u.dll!NtUserGetAncestor
  • win32u.dll!NtUserGetClassInfoEx
  • win32u.dll!NtUserGetClassName
  • win32u.dll!NtUserGetDC
  • win32u.dll!NtUserGetGUIThreadInfo
  • win32u.dll!NtUserGetIconInfo
  • win32u.dll!NtUserGetIconSize
  • win32u.dll!NtUserGetImeInfoEx
  • win32u.dll!NtUserGetKeyboardLayout
  • win32u.dll!NtUserGetObjectInformation
  • win32u.dll!NtUserGetProcessWindowStation
  • win32u.dll!NtUserGetProp
  • win32u.dll!NtUserGetThreadDesktop
  • win32u.dll!NtUserGetThreadState
  • win32u.dll!NtUserGetWindowCompositionAttribute
  • win32u.dll!NtUserIsNonClientDpiScalingEnabled
  • win32u.dll!NtUserIsTopLevelWindow
  • win32u.dll!NtUserMessageCall
  • win32u.dll!NtUserRegisterClassExWOW
  • win32u.dll!NtUserRegisterWindowMessage
  • win32u.dll!NtUserReleaseDC
  • win32u.dll!NtUserRemoveProp
  • win32u.dll!NtUserSelectPalette
  • win32u.dll!NtUserSetCursorIconData
  • win32u.dll!NtUserSetWindowFNID
  • win32u.dll!NtUserSetWindowLongPtr
  • win32u.dll!NtUserSetWindowPos
  • win32u.dll!NtUserUpdateInputContext

Trending

Most Viewed

Loading...