{092d8b42-33d1-432e-9ab4-5dd561cf9b7e}

The file {092d8b42-33d1-432e-9ab4-5dd561cf9b7e} has been detected as malware by 30 anti-virus scanners. This backdoor trojan may be used to conduct distributed denial of service attacks, or used to install additional trojans or other forms of malicious software as well as can steal your sensitive information.
MD5:
1e35a43b2526bdf646f099b2c36b4062

SHA-1:
1408e4cf0bca632a847a37979be7e825eaf54681

SHA-256:
1f81989f4644ef181a60b6da2c47974b125b0753d022821c358171389a0d5ed0

Scanner detections:
30 / 68

Status:
Malware

Analysis date:
4/19/2024 11:34:12 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Barys.7801
856

Agnitum Outpost
Trojan.Bladabindi
7.1.1

AhnLab V3 Security
Backdoor/Win32.Bladabindi
2014.09.14

Avira AntiVirus
TR/ATRAPS.Gen
7.11.171.238

avast!
MSIL:GenMalicious-XE [Trj]
2014.9-141002

AVG
Packed2_c
2015.0.3334

Bitdefender
Gen:Variant.Barys.7801
1.0.20.1375

Comodo Security
UnclassifiedMalware
19506

Dr.Web
BackDoor.Bladabindi.353
9.0.1.0275

Emsisoft Anti-Malware
Gen:Variant.Barys.7801
8.14.10.02.03

ESET NOD32
MSIL/Bladabindi (variant)
8.10413

Fortinet FortiGate
MSIL/Bladabindi.Q!tr
10/2/2014

F-Secure
Gen:Variant.Barys.7801
11.2014-02-10_5

G Data
Gen:Variant.Barys.7801
14.10.24

IKARUS anti.virus
Trojan.Agent
t3scan.1.7.8.0

K7 AntiVirus
Trojan
13.183.13358

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.3164

Malwarebytes
Backdoor.Bot.MSIL
v2014.10.02.03

McAfee
BackDoor-FAFL!1E35A43B2526
5600.6990

Microsoft Security Essentials
Backdoor:MSIL/Bladabindi.AL
1.10904

MicroWorld eScan
Gen:Variant.Barys.7801
15.0.0.825

Panda Antivirus
Trj/CI.A
14.10.02.03

Qihoo 360 Security
Win32/Trojan.e6d
1.0.0.1015

Rising Antivirus
PE:Backdoor.MSIL.Bladabindi!1.9DE6
23.00.65.14930

Sophos
Troj/Bladabin-O
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Barys
10325

Trend Micro House Call
TROJ_GEN.R08NC0DIC14
7.2.275

Trend Micro
TROJ_GEN.R08NC0DIC14
10.465.02

VIPRE Antivirus
Trojan.MSIL.Bladabindi.al
33086

Zillya! Antivirus
Trojan.Bladabindi.Win32.16659
2.0.0.1921

File size:
33.5 KB (34,304 bytes)

File PE Metadata
Compilation timestamp:
9/12/2014 2:26:47 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:LMOROrjsDaOGY88S4MAKr8r3Pq7Fp2Sg6cb:AQDaL8S4MAi8TP+Fp2X6c

Entry address:
0x9CB2

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
31.5 KB (32,256 bytes)

Remove {092d8b42-33d1-432e-9ab4-5dd561cf9b7e} - Powered by Reason Core Security