RFQ REF-JTCAJC-QINHP5-TIS-L0009- AL DHAFRA AL JABER - SUPPLY.exe

Classification: Malicious

RFQ REF-JTCAJC-QINHP5-TIS-L0009- AL DHAFRA AL JABER - SUPPLY.exe is a malicious file sample. Reported by 1 threat source, last seen 2024-11-18.

Detection summary

  • 56 antivirus detections
  • 0 IDS alerts
  • 3 processes observed
  • 0 contacted hosts
  • 0 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-11-18 14:25:14 2024-11-18 15:00:08

Sample information

Filenames
RFQ REF-JTCAJC-QINHP5-TIS-L0009- AL DHAFRA AL JABER - SUPPLY.exe
File type
PE32 executable (GUI) Intel 80386 Mono/.Net assemb ...
Size
600064 bytes
MD5
b8a2fa19e2418d7cb6c857ced026585e
SHA-1
78e8aad0b3f3caf3058be5caed838fdb1764d233
SHA-256
089d8381834066449bcd52d04db467353e195fe84745a8d2587bacf93802a706
First indexed
2024-11-18 14:09:36
Last updated
2026-09-03 00:47:54

Antivirus detections

EngineDetection
APEXMalicious
AVGWin32:CrypterX-gen [Trj]
Acronissuspicious
AvastWin32:CrypterX-gen [Trj]
BkavW32.AIDetectMalware.CS
CTXexe.trojan.msil
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
DeepInstinctMALICIOUS
ESET-NOD32a variant of MSIL/Kryptik.AMRM
Elasticmalicious (high confidence)
FortinetMSIL/Remcos.GWMJE!tr
GoogleDetected
GridinsoftRansom.Win32.Wacatac.sa
KasperskyUDS:Trojan-Spy.MSIL.Noon.gen
KingsoftMSIL.Trojan-Spy.Noon.gen
LionicTrojan.Win32.Noon.l!c
MalwarebytesMachineLearning/Anomalous.100%
MaxSecureTrojan.Malware.300983.susgen
McAfeeArtemis!B8A2FA19E241
McAfeeDReal Protect-LS!B8A2FA19E241
MicrosoftTrojan:Win32/Wacatac.B!ml
Paloaltogeneric.ml
PandaTrj/Chgt.AD
RisingMalware.Obfus/[email protected] (RDM.MSIL2:Kl+HPTx/sNCkYo+gKIzLvA)
SangforTrojan.Win32.Save.a
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.hc
SophosTroj/Krypt-ABH
SymantecMSIL.Packed.43
VBA32TrojanLoader.MSIL.DaVinci.Heur
VaristW32/Trojan.LOHS-6648
VirITTrojan.Win32.MSIL_Heur.A
alibabacloudTrojan[spy]:MSIL/Wacatac.B9nj
ALYacTrojan.GenericKD.74856881
AhnLab-V3Trojan/Win.CrypterX-gen.C5696816
AlibabaTrojan:MSIL/Formbook.394e4a7b
Antiy-AVLTrojan[Spy]/MSIL.Noon
ArcabitTrojan.Generic.D47639B1
BitDefenderTrojan.GenericKD.74856881
DrWebBackDoor.AgentTeslaNET.20
EmsisoftTrojan.GenericKD.74856881 (B)
FireEyeTrojan.GenericKD.74856881
GDataTrojan.GenericKD.74856881
IkarusTrojan.MSIL.Inject
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
KasperskyHEUR:Trojan.MSIL.Taskun.gen
LionicTrojan.Win32.Taskun.4!c
MalwarebytesTrojan.MalPack
MaxSecureTrojan.Malware.74644571.susgen
MicroWorld-eScanTrojan.GenericKD.74856881
MicrosoftTrojan:MSIL/Formbook.AMAE!MTB
TencentMsil.Trojan.Taskun.Szfl
VIPRETrojan.GenericKD.74856881
huorongTrojanSpy/MSIL.AgentTesla.ui

Process list

NameCommand line
RFQREF-JTCAJC-QINHP5-TIS-L0009-ALDHAFRAALJABER-SUPPLY.exe
powershell.exeAdd-MpPreference -ExclusionPath "C:\RFQREF-JTCAJC-QINHP5-TIS-L0009-ALDHAFRAALJABER-SUPPLY.exe"
RFQREF-JTCAJC-QINHP5-TIS-L0009-ALDHAFRAALJABER-SUPPLY.exe