Classification: Malicious
sKHg4YhnsTC31Exo.exe is a malicious file sample. Reported by 1 threat source, last seen 2023-11-09. Detected by 69 antivirus engines.
Detection summary
- 69 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Ransomware |
VM-Ray |
2023-11-09 17:22:52 |
2023-11-09 17:22:52 |
|
|
Sample information
- Filenames
- sKHg4YhnsTC31Exo.exe
- File type
- PE32 executable (GUI) Intel 80386, for MS Windows
- SHA-256
00fb30d92869b0cc318e8d63aeb54a609e1f83d28dc85f3f21812464b5ccae45
- First indexed
- 2023-11-09 17:05:19
- Last updated
- 2026-09-03 00:31:28
Antivirus detections
| Engine | Detection |
| ALYac | Trojan.Ransom.CryptoLocker.B |
| APEX | Malicious |
| AVG | Win32:Small-HTZC [Trj] |
| Acronis | suspicious |
| AhnLab-V3 | Trojan/Win32.Zbot.C205277 |
| Alibaba | TrojanSpy:Win32/Bulta.6041bd80 |
| Antiy-AVL | Trojan/Win32.Unknown |
| Arcabit | Trojan.Ransom.CryptoLocker.B |
| Avast | Win32:Small-HTZC [Trj] |
| Avira | TR/Agent.AGY.4 |
| Baidu | Win32.Trojan-Downloader.Small.ck |
| BitDefender | Trojan.Ransom.CryptoLocker.B |
| BitDefenderTheta | Gen:NN.ZexaF.36792.cq2@aGFXBJbi |
| Bkav | W32.FamVT.GeND.Trojan |
| CAT-QuickHeal | Trojan.SmallRI.S28992068 |
| ClamAV | Win.Trojan.Upatre-3340 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cybereason | malicious.c49f87 |
| Cylance | unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.DownLoad3.28161 |
| ESET-NOD32 | Win32/TrojanDownloader.Small.AAB |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.Ransom.CryptoLocker.B (B) |
| F-Secure | Trojan.TR/Agent.AGY.4 |
| FireEye | Generic.mg.aa7949614e9367e3 |
| Fortinet | W32/Mdrop.AAB!tr |
| GData | Win32.Trojan.PSE.10565N |
| Google | Detected |
| Gridinsoft | Trojan.Win32.Agent.vb!s1 |
| Ikarus | Trojan-Downloader.Win32.Small |
| Jiangmin | Trojan/Bublik.gja |
| K7AntiVirus | Trojan-Downloader ( 00457c511 ) |
| K7GW | Trojan-Downloader ( 00457c511 ) |
| Kaspersky | Trojan-Spy.Win32.Zbot.qzxr |
| Kingsoft | malware.kb.a.997 |
| Lionic | Trojan.Win32.Generic.lNlt |
| MAX | malware (ai score=83) |
| Malwarebytes | Generic.Trojan.Downloader.DDS |
| MaxSecure | Trojan.Upatre.Gen |
| McAfee | Downloader-FTT!AA7949614E93 |
| MicroWorld-eScan | Trojan.Ransom.CryptoLocker.B |
| Microsoft | PWS:Win32/Zbot.FD!MTB |
| NANO-Antivirus | Trojan.Win32.DownLoad3.cmcvvp |
| Panda | Generic Malware |
| Rising | Downloader.Waski!1.A489 (CLASSIC) |
| SUPERAntiSpyware | Trojan.Agent/Gen-Upatre |
| Sangfor | Suspicious.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.PWSZbot.nm |
| Sophos | Troj/Agent-AEAX |
| Symantec | Trojan.Zbot |
| Tencent | Trojan-Downloader.Win32.Small.ycq |
| Trapmine | malicious.high.ml.score |
| TrendMicro | TROJ_UPATRE.PA |
| TrendMicro-HouseCall | TROJ_UPATRE.PA |
| VBA32 | TrojanSpy.Zbot |
| VIPRE | Trojan.Ransom.CryptoLocker.B |
| Varist | W32/Trojan.SKUP-8129 |
| ViRobot | Dropper.U.Agent.25600.A |
| VirIT | Trojan.Win32.Banker.XJ |
| Webroot | W32.Trojan.Gen |
| Xcitium | TrojWare.Win32.TrojanDownloader.Upatre.MAUA@5rueuc |
| Yandex | Trojan.Bublik!7ZwW6dY5BGg |
| Zillya | Trojan.Bublik.Win32.12206 |
| ZoneAlarm | Trojan-Spy.Win32.Zbot.qzxr |
| Zoner | Trojan.Win32.18131 |
| tehtris | Generic.Malware |