server.exe

The executable server.exe has been detected as malware by 36 anti-virus scanners.
MD5:
59c94e292c4c06d546fd8c66ff9da7f1

SHA-1:
0ec627ba83c8c6f645843da071001fd81bc6a4e9

SHA-256:
383c479bcdda54727ae0cc6e6e28bdb73dc4a61ed7f367e89e736cd70426a86f

Scanner detections:
36 / 68

Status:
Malware

Analysis date:
4/1/2025 8:03:09 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Generic.Malware.G!SMkbg.1C777E63
-40

AegisLab AV Signature
Backdoor.W32.Dagger.140!c
2.1.4+

AhnLab V3 Security
Win-Trojan/Dagger.Server
2016.04.13

Arcabit
Generic.Malware.G!SMkbg.1C777E63
1.0.0.669

avast!
Win32:Trojan-gen
2014.9-170315

AVG
BackDoor.Dagger
2018.0.2438

Baidu Antivirus
Backdoor.Win32.Dagger
4.0.3.17315

Bitdefender
Generic.Malware.G!SMkbg.1C777E63
1.0.20.370

Bkav FE
W32.Clodffb.Trojan
1.3.0.7744

Clam AntiVirus
Win.Trojan.Dagger-5
0.98/21511

Comodo Security
Backdoor.Win32.Dagger.140.Server
24787

Emsisoft Anti-Malware
Generic.Malware.G!SMkbg.1C777E63
8.17.03.15.04

ESET NOD32
Win32/Dagger.140.Server
11.13325

Fortinet FortiGate
W32/Dagger.140!tr.bdr
3/15/2017

F-Prot
W32/Backdoor2.FJUE
v6.4.7.1.166

F-Secure
Generic.Malware.G!SMkbg.1C777E63
11.2017-15-03_4

G Data
Generic.Malware.G!SMkbg.1C777E63
17.3.25

IKARUS anti.virus
Trojan-Dropper.Delf
t3scan.2.0.9.0

K7 AntiVirus
Trojan
13.221.19285

Kaspersky
Backdoor.Win32.Dagger
14.0.0.-1313

McAfee
BackDoor-NU
5600.6094

Microsoft Security Essentials
Backdoor:Win32/Dagger.1_40
1.1.12603.0

MicroWorld eScan
Generic.Malware.G!SMkbg.1C777E63
18.0.0.222

NANO AntiVirus
Trojan.Win32.Dagger.hfgg
1.0.30.7834

nProtect
Backdoor/W32.Dagger.186368
16.04.11.01

Panda Antivirus
Trj/Genetic.gen
17.03.15.04

Qihoo 360 Security
Win32/Backdoor.1c0
1.0.0.1120

Rising Antivirus
PE:Backdoor.Dagger.140!27762 [F]
23.00.65.17313

Sophos
Troj/Dagger-140
4.98

Total Defense
Win32/Dagger.140
37.1.62.1

Trend Micro House Call
BKDR_DAGGER.140
7.2.74

Trend Micro
BKDR_DAGGER.140
10.465.15

Vba32 AntiVirus
Backdoor.Dagger
3.12.26.4

VIPRE Antivirus
Trojan.Win32.Generic
48586

ViRobot
Backdoor.Win32.Dagger_140.Svr[h]
2014.3.20.0

Zillya! Antivirus
Backdoor.Dagger.Win32.4
2.0.0.2779

File size:
182 KB (186,368 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ceh\cehv8 module 06 trojans and backdoors\miscellaneous trojans\dagger v1.40\server\server.exe

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x7B001

Entry point:
60, E8, 70, 05, 00, 00, EB, 4C, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 87, DB, 90, 00, A0, 46, 00, 14, A0, 46, 00, D0, 64, 46, 00, 10, B0, 46, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, B0, 07, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, BB, A4, 39, 44, 00, 03, DD, 2B, 9D, D5, 39, 44, 00, 83, BD, 04, 48, 44, 00, 00, 89, 9D, 04, 48, 44, 00, 0F, 85, 66, 04, 00, 00, 8D, 85, 0C, 48, 44, 00, 50, FF, 95, 18, 49, 44...
 
[+]

Entropy:
7.9181

Packer / compiler:
ASPack v2.000

Code size:
396 KB (405,504 bytes)

Remove server.exe - Powered by Reason Core Security