{09e03189-cd46-4a69-ab39-2ca7ecb8bf2a}

The file {09e03189-cd46-4a69-ab39-2ca7ecb8bf2a} has been detected as malware by 36 anti-virus scanners. This backdoor trojan may be used to conduct distributed denial of service attacks, or used to install additional trojans or other forms of malicious software as well as can steal your sensitive information.
MD5:
a21940ea5e49d12d9e6315dac154f617

SHA-1:
74d37700f973c5576648c039296a307cb9d9ce7b

SHA-256:
61963d51d43a6f94ef410067f29dedad77a7138d7289349910090a2581933228

Scanner detections:
36 / 68

Status:
Malware

Analysis date:
4/25/2024 3:42:20 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.75290
856

AhnLab V3 Security
Backdoor/Win32.Bladabindi
2014.09.14

Avira AntiVirus
TR/Dropper.Gen7
7.11.171.238

avast!
MSIL:GenMalicious-AV [Trj]
2014.9-141002

AVG
PSW.ILUSpy
2015.0.3334

Baidu Antivirus
Trojan.MSIL.Disfa
4.0.3.14102

Bitdefender
Gen:Variant.Zusy.75290
1.0.20.1375

Comodo Security
Backdoor.MSIL.Bladabindi.A
19506

Dr.Web
BackDoor.Bladabindi.1056
9.0.1.0275

Emsisoft Anti-Malware
Gen:Variant.Zusy.75290
8.14.10.02.03

ESET NOD32
MSIL/Bladabindi.BH (variant)
8.10413

Fortinet FortiGate
MSIL/Bladabindi.Q!tr
10/2/2014

F-Prot
W32/MSIL_Bladabindi.G.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Zusy.75290
11.2014-02-10_5

G Data
Gen:Variant.Zusy.75290
14.10.24

IKARUS anti.virus
Backdoor.MSIL
t3scan.1.7.8.0

K7 AntiVirus
Trojan
13.183.13358

Kaspersky
Trojan.MSIL.Disfa
14.0.0.3164

Malwarebytes
Trojan.MSIL
v2014.10.02.03

McAfee
BackDoor-NJRat!A21940EA5E49
5600.6990

Microsoft Security Essentials
Backdoor:MSIL/Bladabindi.AJ
1.10904

MicroWorld eScan
Gen:Variant.Zusy.75290
15.0.0.825

NANO AntiVirus
Trojan.Win32.DownLoader11.cxfbrl
0.28.2.61942

Norman
Bladabindi.JQ
11.20141002

nProtect
Trojan/W32.Agent.24064.TV
14.09.12.01

Panda Antivirus
Trj/CI.A
14.10.02.03

Qihoo 360 Security
Win32/Trojan.Dropper.fae
1.0.0.1015

Quick Heal
Backdoor.Bladabindi.AL3
10.14.14.00

Sophos
Troj/DotNet-P
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Bladabindi
10325

Total Defense
Win32/DotNetDl.A!generic
37.0.11178

Trend Micro House Call
BKDR_BLBINDI.SMN
7.2.275

Trend Micro
BKDR_BLBINDI.SMN
10.465.02

Vba32 AntiVirus
Trojan.MSIL.Disfa
3.12.26.3

VIPRE Antivirus
Backdoor.MSIL.Bladabindi.a
33082

Zillya! Antivirus
Trojan.Disfa.Win32.10634
2.0.0.1921

File size:
23.5 KB (24,064 bytes)

File PE Metadata
Compilation timestamp:
9/12/2014 4:33:34 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:Xc68yCasVKDh3OQyNpsQ1im/VjJs+PyR46vg5J++p57nhmRvR6JZlbw8hqIusZzr:D873Kt+QesGN/VjZPQRpcnui

Entry address:
0x74AE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
21.5 KB (22,016 bytes)

Remove {09e03189-cd46-4a69-ab39-2ca7ecb8bf2a} - Powered by Reason Core Security