03dbd7e7306a8bf50b6423d1df0bf259177f32380e48a147ec0e842487c0bfb6
Classification: Malicious
03dbd7e7306a8bf50b6423d1df0bf259177f32380e48a147ec0e842487c0bfb6 is a malicious file sample. Linked to Hancitor malware. Detected by 73 antivirus engines.
Detection summary
- 73 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: HANCITOR (S0499)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Hancitor | MalwareBazaar Abuse.ch | 2022-03-20 19:51:15 | 2022-03-20 19:51:15 | malicious-activity | S0499 Hancitor |
| Generic.Malware | MalwareBazaar Abuse.ch | 2022-03-20 19:51:15 | 2022-03-20 19:51:15 | malicious-activity |
Sample information
- Filenames
- 03dbd7e7306a8bf50b6423d1df0bf259177f32380e48a147ec0e842487c0bfb6
- File type
- application/x-dosexec
- MD5
c86d3b39a9c0f72513f4aae8327fd0e8- SHA-1
8d6fd0696111777073e1e891dcf5654de89a8d21- SHA-256
03dbd7e7306a8bf50b6423d1df0bf259177f32380e48a147ec0e842487c0bfb6- First indexed
- 2022-03-20 21:15:04
- Last updated
- 2026-06-16 04:00:32
Antivirus detections
| Engine | Detection |
|---|---|
| Bkav | W32.AIDetect.malware2 |
| McAfee | GenericRXMW-FK!C86D3B39A9C0 |
| Cylance | Unsafe |
| Sangfor | Suspicious.Win32.Save.a |
| BitDefender | Gen:Variant.Zusy.365652 |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Elastic | malicious (high confidence) |
| ESET-NOD32 | a variant of Win32/TrojanDownloader.Hancitor.P |
| APEX | Malicious |
| Cynet | Malicious (score: 100) |
| Kaspersky | VHO:Trojan-Downloader.Win32.Convagent.gen |
| MicroWorld-eScan | Gen:Variant.Zusy.365652 |
| Rising | Downloader.Hancitor!8.A19 (TFE:dGZlOgX9eOqEku/+xw) |
| Ad-Aware | Gen:Variant.Zusy.365652 |
| Sophos | Mal/Emogen-Y |
| DrWeb | Trojan.Chanitor.59 |
| McAfee-GW-Edition | BehavesLike.Win32.Injector.mh |
| Trapmine | malicious.high.ml.score |
| FireEye | Generic.mg.c86d3b39a9c0f725 |
| Emsisoft | Gen:Variant.Zusy.365652 (B) |
| SentinelOne | Static AI - Malicious PE |
| Jiangmin | TrojanDownloader.Geral.ehq |
| Avira | TR/Hijacker.Gen |
| MAX | malware (ai score=87) |
| Microsoft | Trojan:Win32/Hancitor.ARK!MTB |
| Arcabit | Trojan.Zusy.D59454 |
| ZoneAlarm | VHO:Trojan-Downloader.Win32.Convagent.gen |
| GData | Gen:Variant.Zusy.365652 |
| AhnLab-V3 | Downloader/Win.Hancitor.R366102 |
| Acronis | suspicious |
| VBA32 | Trojan.Chanitor |
| ALYac | Gen:Variant.Zusy.365652 |
| Malwarebytes | Trojan.Downloader |
| Panda | Trj/GdSda.A |
| Ikarus | Trojan-Downloader.Win32.Hancitor |
| Fortinet | W32/Hancitor.P!tr |
| BitDefenderTheta | Gen:NN.ZedlaF.34294.bu4@ayqqMOli |
| AVG | Win32:HancitorDwn-B [Drp] |
| Avast | Win32:HancitorDwn-B [Drp] |
| Alibaba | TrojanDownloader:Win32/Hancitor.07e13867 |
| Antiy-AVL | Trojan/Win32.Hancitor |
| Bkav | W32.AIDetectMalware |
| CAT-QuickHeal | Trojan.Ghanarava.16777175297fd0e8 |
| CTX | dll.trojan.hancitor |
| ClamAV | Win.Downloader.Hancitor-10020154-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| DeepInstinct | MALICIOUS |
| Elastic | Windows.Trojan.Hancitor |
| F-Secure | Trojan.TR/Hijacker.Gen |
| Detected | |
| K7AntiVirus | Trojan-Downloader ( 005727781 ) |
| K7GW | Trojan-Downloader ( 005727781 ) |
| Kaspersky | Trojan.Win32.Hancitor.hx |
| Kingsoft | malware.kb.a.999 |
| Lionic | Trojan.Win32.Hancitor.4!c |
| Malwarebytes | Malware.AI.3940491850 |
| MaxSecure | Trojan.Malware.144550944.susgen |
| McAfeeD | ti!03DBD7E7306A |
| Paloalto | generic.ml |
| Rising | Downloader.Hancitor!8.A19 (TFE:5:JuACwxShjKR) |
| Skyhigh | BehavesLike.Win32.Generic.mh |
| Symantec | Backdoor.Hancitor!gm |
| Tencent | Malware.Win32.Gencirc.13b0f6a4 |
| TrendMicro-HouseCall | Trojan.Win32.VSX.PE04C9V |
| VIPRE | Gen:Variant.Zusy.365652 |
| Varist | W32/ABTrojan.EHHN-8890 |
| ViRobot | Trojan.Win32.Z.Hancitor.25600 |
| Xcitium | Malware@#15k53dsf9tbmm |
| Zillya | Trojan.Hancitor.Win32.87 |
| ZoneAlarm | Mal/Emogen-Y |
| alibabacloud | Trojan[downloader]:Win/Hancitor.P |
| huorong | TrojanDownloader/Hancitor.b |
| tehtris | Generic.Malware |