00bdb3b40016cf57e926188ce256845c7b17d73f1d95b89d4a19d691cf185242.bin

Classification: Malicious

00bdb3b40016cf57e926188ce256845c7b17d73f1d95b89d4a19d691cf185242.bin is a malicious file sample. Linked to Dcrat malware. Detected by 57 antivirus engines.

Detection summary

  • 57 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 1 DNS requests

MITRE ATT&CK associations

Malware families: DCRAT (S9017)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2026-04-25 02:45:04 2026-04-25 05:45:08
Dcrat Triage 2026-04-25 02:17:03 2026-04-25 02:17:03 malicious-activity S9017 DCRAT

Tags

evasive windows-server-utility dcrat defense_evasion discovery execution infostealer persistence rat trojan

Sample information

Filenames
00bdb3b40016cf57e926188ce256845c7b17d73f1d95b89d4a19d691cf185242.bin, x00bdb3b40016cf57e926188ce256845c7b17d73f1d95b89d4a19d691cf185242.exe
File type
PE32 executable for MS Windows 5.00 (GUI), Intel i ...
MD5
b88fc5ba024c2e0745053c74b5b710ad
SHA-1
3ae907127ffbe434da54c0d7c410ec702fcce995
SHA-256
00bdb3b40016cf57e926188ce256845c7b17d73f1d95b89d4a19d691cf185242
First indexed
2026-04-25 02:17:03
Last updated
2026-09-03 00:24:13

Antivirus detections

EngineDetection
ALYacTrojan.Agent.GQAF
APEXMalicious
AVGWin32:Evo-gen [Trj]
AhnLab-V3Backdoor/Win.DCRat.R715971
AlibabaTrojan:Win32/DCRat.b8d1a200
Antiy-AVLTrojan/Win32.DCRat
ArcabitTrojan.Agent.GQAF
AvastWin32:Evo-gen [Trj]
AviraHEUR/AGEN.1323984
BitDefenderTrojan.Agent.GQAF
BkavW32.AIDetectMalware
CTXexe.trojan.dcrat
ClamAVWin.Malware.Gqaf-10058390-0
CrowdStrikewin/malicious_confidence_100% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
DrWebTrojan.Siggen31.36139
ESET-NOD32MSIL/Agent.VRB trojan
Elasticmalicious (high confidence)
EmsisoftTrojan.Agent.GQAF (B)
F-SecureHeuristic.HEUR/AGEN.1323984
FortinetW32/Agent.VRB!tr
GDataTrojan.Agent.GQAF
GoogleDetected
GridinsoftTrojan.Win32.Agent.oa!s1
IkarusTrojan.MSIL.Agent
K7AntiVirusTrojan ( 0001140e1 )
K7GWTrojan ( 0001140e1 )
KasperskyUDS:Backdoor.MSIL.DcRat
Kingsoftmalware.kb.a.990
MalwarebytesSpyware.Passwordstealer
MaxSecureTrojan.Malware.120990306.susgen
McAfeeDReal Protect-LS!B88FC5BA024C
MicroWorld-eScanTrojan.Agent.GQAF
MicrosoftTrojan:Win32/DCRat.MX!MTB
Paloaltogeneric.ml
RisingTrojan.Agent!8.B1E (CLOUD)
SUPERAntiSpywareTrojan.Agent/Gen-Stealer
SangforSuspicious.Win32.Save.pkr
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Injector.tc
SophosTroj/DCRat-AC
SymantecML.Attribute.HighConfidence
TencentTrojan.Msil.Agent.16002036
TrellixENSGenericRXWS-RE!B88FC5BA024C
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9z
VBA32Trojan.Agent
VIPRETrojan.Agent.GQAF
VaristW32/Trojan.LOUW-4466
ViRobotTrojan.Win.Z.Agent.1773568.VLW
VirITTrojan.Win32.GenusC.IME
WebrootW32.Trojan.Gen
ZoneAlarmTroj/DCRat-AC
alibabacloudTrojan:MSIL/DCRat.MD8PHU
huorongBackdoor/DcRAT.e
tehtrisGeneric.Malware

DNS requests

batyatj6.beget.tech