Threat Database Trojans Trojan.MSIL.Injector.XB

Trojan.MSIL.Injector.XB

By CagedTech in Trojans

Threat Scorecard

Popularity Rank: 10,324
Threat Level: 80 % (High)
Infected Computers: 54
First Seen: February 22, 2023
Last Seen: February 6, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Trojan.MSIL.Injector.XB
Signature status: No Signature

Known Samples

MD5: 8da654dcc51f0ef2e75c266de924b538
SHA1: cc99ae4b5b66dc0b7ff0792b73a3a9d9c3e7abf0
SHA256: 49478E1791C49CB61FAEB9C3C6261A655FD73E4A18E08503BD21E91C58C17197
File Size: 735.86 KB, 735862 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • .NET
  • x86

Files Modified

File Attributes
c:\users\user\appdata\local\temp\nsaa312.tmp Generic Read,Write Data,Write Attributes,Write extended,Append data,Delete
c:\users\user\appdata\local\temp\nsqa313.tmp\modern-header.bmp Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsqa313.tmp\modern-wizard.bmp Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsqa313.tmp\modern-wizard.bmp Synchronize,Write Attributes
c:\users\user\appdata\local\temp\nsqa313.tmp\nsdialogs.dll Generic Write,Read Attributes
c:\users\user\appdata\local\temp\nsqa313.tmp\system.dll Generic Write,Read Attributes

Trending

Most Viewed

Loading...