{02cf597c-0b45-46a8-9a17-a4e22fe723fc}

The file {02cf597c-0b45-46a8-9a17-a4e22fe723fc} has been detected as malware by 36 anti-virus scanners. This backdoor trojan may be used to conduct distributed denial of service attacks, or used to install additional trojans or other forms of malicious software as well as can steal your sensitive information.
MD5:
b8526583458db70a2ccb08144a4cc310

SHA-1:
256991aa7c99bd4358cc458ea5a5c907d28726ef

SHA-256:
6d07b3f3027cbe21192afc9890e603ad5bfd4a62bd291c3c81bb9dac62221289

Scanner detections:
36 / 68

Status:
Malware

Analysis date:
4/18/2024 2:19:58 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Barys.7801
856

Agnitum Outpost
Trojan.ATRAPS
7.1.1

AhnLab V3 Security
Trojan/Win32.Bladabindi
2014.09.20

Avira AntiVirus
TR/ATRAPS.Gen
7.11.173.118

avast!
MSIL:GenMalicious-V [Trj]
2014.9-141002

AVG
PSW.ILUSpy
2015.0.3334

Baidu Antivirus
Trojan.MSIL.Bladabindi
4.0.3.14102

Bitdefender
Gen:Variant.Barys.7801
1.0.20.1375

Comodo Security
TrojWare.MSIL.Bladabindi.KX
19557

Dr.Web
BackDoor.Bladabindi.2539
9.0.1.0275

Emsisoft Anti-Malware
Gen:Variant.Barys.7801
8.14.10.02.03

ESET NOD32
MSIL/Bladabindi (variant)
8.10444

Fortinet FortiGate
MSIL/Agent.PPV!tr
10/2/2014

F-Prot
W32/MSIL_Bladabindi.A2.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Barys.7801
11.2014-02-10_5

G Data
Gen:Variant.Barys.7801
14.10.24

IKARUS anti.virus
Trojan.Msil
t3scan.1.7.8.0

K7 AntiVirus
Trojan
13.183.13432

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.3164

Malwarebytes
Trojan.MSIL
v2014.10.02.03

McAfee
BackDoor-NJRat!B8526583458D
5600.6990

Microsoft Security Essentials
Backdoor:MSIL/Bladabindi.AJ
1.11005

MicroWorld eScan
Gen:Variant.Barys.7801
15.0.0.825

NANO AntiVirus
Trojan.Win32.DownLoader10.dbxzfj
0.28.2.62151

Norman
MSIL.BZ
11.20141002

nProtect
Trojan/W32.Fsysna.29696
14.09.19.01

Qihoo 360 Security
Malware.QVM03.Gen
1.0.0.1015

Quick Heal
Trojan.Bladabindi.B3
10.14.14.00

Rising Antivirus
PE:Backdoor.Bot!1.6675
23.00.65.14930

Sophos
Troj/MSIL-HX
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Barys
10325

Total Defense
Win32/DotNetDl.A!generic
37.0.11189

Trend Micro House Call
BKDR_BLADABI.SMC
7.2.275

Trend Micro
BKDR_BLADABI.SMC
10.465.02

VIPRE Antivirus
Trojan.MSIL.Bladabindi.agxy
33266

Zillya! Antivirus
Trojan.Bladabindi.Win32.14961
2.0.0.1927

File size:
29 KB (29,696 bytes)

File PE Metadata
Compilation timestamp:
9/16/2014 8:22:15 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:m7hkrLGN8fNl7L5H4yAyr9n95/K4ZoumEDYcqeYtGBsbh0w4wlAokw9OhgOL1vYS:m67R4yAy944AE1qe5BKh0p29SgR5u

Entry address:
0x8AFE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
27 KB (27,648 bytes)

Remove {02cf597c-0b45-46a8-9a17-a4e22fe723fc} - Powered by Reason Core Security