projrat.exe

The executable projrat.exe has been detected as malware by 27 anti-virus scanners.
Version:
1.0.0.0

MD5:
694210c7b36d5cf3118b80bfb4cb2b28

SHA-1:
f2718fa38c18690485deb228be0c1e8ad64df876

SHA-256:
0c58572bf7b8515d0d9d194452f80754ba1c06ba8a55443b46cb2f54ed200cb6

Scanner detections:
27 / 68

Status:
Malware

Analysis date:
4/24/2024 11:52:33 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.Agent
7.1.1

AhnLab V3 Security
Win-Trojan/Delf.433152
2013.10.08

Avira AntiVirus
TR/Agent.433152.13
7.11.106.58

avast!
Win32:Malware-gen
2014.9-140923

AVG
BackDoor.Generic15
2015.0.3342

Baidu Antivirus
Trojan.Win32.Delf.FOXTRA
4.0.3.14923

Bitdefender
Backdoor.Generic.703990
1.0.20.1330

Bkav FE
HW32.CDB
1.3.0.4246

Dr.Web
BackDoor.Rat.53
9.0.1.0266

Emsisoft Anti-Malware
Backdoor.Generic.703990
8.14.09.23.02

ESET NOD32
Win32/Delf.FOXTRA (variant)
8.8887

F-Secure
Backdoor.Generic.703990
11.2014-23-09_3

G Data
Backdoor.Generic.703990
14.9.22

IKARUS anti.virus
Trojan-Dropper.Delf
t3scan.2.0.127

K7 AntiVirus
Backdoor
13.173.9807

Kaspersky
Backdoor.Win32.Delf
14.0.0.3207

McAfee
Artemis!694210C7B36D
5600.6998

MicroWorld eScan
Backdoor.Generic.703990
15.0.0.798

NANO AntiVirus
Trojan.Win32.Delf.osawe
0.26.0.55203

Norman
Troj_Generic.APCPS
11.20140923

nProtect
Backdoor/W32.Agent.433152.M
13.10.07.03

Panda Antivirus
Trj/CI.A
14.09.23.02

Sophos
Mal/Generic-S
4.93

Trend Micro House Call
TROJ_GEN.R0GB1D3
7.2.266

Vba32 AntiVirus
Backdoor.Whimoo.6521
3.12.24.3

VIPRE Antivirus
Trojan.Win32.Generic
22178

ViRobot
Backdoor.Win32.A.Delf.433152
2011.4.7.4223

File size:
423 KB (433,152 bytes)

Product version:
1.0.0.0

File type:
Executable application (Win32 EXE)

Language:
German (Germany)

File PE Metadata
Compilation timestamp:
4/19/2010 5:52:20 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:QwiMYJ9M4fNuWJQK4SpP7/ManftIQDQ39nr:QwPYJmWJQjMbZnftIBr

Entry address:
0x1000

Entry point:
B8, 3C, F6, 5A, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 13, 5F, AC, 93, F6, DA, 0E, 4A, 3E, 62, 1D, 64, 84, 49, A8, 0C, 99, B2, F5, 69, 35, D4, 52, AF, E7, 82, B9, EB, DF, 2D, 1B, DD, 5F, 55, ED, BE, 51, CB, BA, 79, 06, CE, B9, 06, C3, 57, 03, D8, 92, 66, 83, 3E, 63, CF, BF, AD, A3, E9, EF, F3, 52, AE, 0A, A5, DF, 59, 93, 9E, CE, E4, D8, D0, 15, 4F, 3E, 32, F6, F9, 2A, 83, D0, 95, A4, 50, B5, 67, D6, DD, 48, 2C, 15, 57, 27...
 
[+]

Entropy:
7.9264

Packer / compiler:
PECompact v2

Code size:
785.5 KB (804,352 bytes)

Remove projrat.exe - Powered by Reason Core Security