2026-01-31_bb140985200d8281fc1757c697dcd821_drokbk_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee

Classification: Malicious

2026-01-31_bb140985200d8281fc1757c697dcd821_drokbk_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee is a malicious file sample. Linked to Dcrat malware.

Detection summary

  • 55 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: DCRAT (S9017)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Dcrat Triage 2026-01-31 21:20:47 2026-01-31 21:20:47 malicious-activity S9017 DCRAT

Tags

dcrat defense_evasion discovery execution infostealer persistence rat trojan

Sample information

Filenames
2026-01-31_bb140985200d8281fc1757c697dcd821_drokbk_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee
MD5
bb140985200d8281fc1757c697dcd821
SHA-1
e2a16da9df98dbfc22c8267eacc9ccf9a93205bd
SHA-256
0a14c06eeab0906da4e8aef27d60a9e4ed8ab176fae429d86d0a61f01c005f7b
SHA-512
a140c5bd2e1be3f9c2b7c258896ba8c3dd257d4a7f75eca874f7bd4d992ce23e57b2ed97e17ee5f8d1c1d08badf7e3742088b6e5b02d6a91f14a263f49501858
First indexed
2026-01-31 21:20:47
Last updated
2026-09-02 16:08:02

Antivirus detections

EngineDetection
ALYacTrojan.Agent.GQAF
APEXMalicious
AVGWin32:Evo-gen [Trj]
AhnLab-V3Backdoor/Win.DCRat.R729600
Antiy-AVLTrojan/Win32.DCRat
ArcabitTrojan.Agent.GQAF
AvastWin32:Evo-gen [Trj]
AviraHEUR/AGEN.1323984
BitDefenderTrojan.Agent.GQAF
BkavW32.AIDetectMalware
CTXexe.trojan.dcrat
ClamAVWin.Malware.Gqaf-10058390-0
CrowdStrikewin/malicious_confidence_100% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
DrWebTrojan.Siggen31.36139
ESET-NOD32MSIL/Agent.VRB trojan
Elasticmalicious (high confidence)
EmsisoftTrojan.Agent.GQAF (B)
F-SecureHeuristic.HEUR/AGEN.1323984
FortinetW32/Agent.VRB!tr
GDataTrojan.Agent.GQAF
GoogleDetected
GridinsoftTrojan.Win32.Agent.oa!s1
IkarusTrojan.MSIL.Agent
K7AntiVirusTrojan ( 0001140e1 )
K7GWTrojan ( 0001140e1 )
KasperskyUDS:Backdoor.MSIL.DcRat
KingsoftMSIL.Backdoor.DcRat.gen
LionicTrojan.Win32.DCRat.4!c
MalwarebytesSpyware.Passwordstealer
MaxSecureTrojan.Malware.578650111.susgen
McAfeeDReal Protect-LS!BB140985200D
MicroWorld-eScanTrojan.Agent.GQAF
MicrosoftTrojan:Win32/DCRat.MX!MTB
Paloaltogeneric.ml
RisingTrojan.Agent!8.B1E (CLOUD)
SUPERAntiSpywareTrojan.Agent/Gen-Stealer
SangforSuspicious.Win32.Save.pkr
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Injector.tc
SophosTroj/DCRat-AC
TencentTrojan.Msil.Agent.16002036
TrellixENSGenericRXWS-RE!BB140985200D
VBA32Trojan.Agent
VIPRETrojan.Agent.GQAF
VaristW32/Trojan.LOUW-4466
ViRobotTrojan.Win.Z.Agent.1773568.QDK
VirITTrojan.Win32.GenusC.IME
WebrootWin.Malware.Gen
ZoneAlarmTroj/DCRat-AC
alibabacloudTrojan:MSIL/DCRat.MD8PHU
huorongBackdoor/DcRAT.e
tehtrisGeneric.Malware