2026-06-08_b8b834f365125a14de2bd88e9dcd335f_amadey_cobalt-strike_elex_hijackloader_vidar_wannacry
Classification: Malicious
2026-06-08_b8b834f365125a14de2bd88e9dcd335f_amadey_cobalt-strike_elex_hijackloader_vidar_wannacry is a malicious file sample.
Detection summary
- 64 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Triage |
2026-06-08 13:51:58 |
2026-06-08 13:51:58 |
malicious-activity
|
|
Tags
aspackv2
discovery
persistence
Sample information
- Filenames
- 2026-06-08_b8b834f365125a14de2bd88e9dcd335f_amadey_cobalt-strike_elex_hijackloader_vidar_wannacry
- SHA-256
1a9301236637edbb6843a8e614774784d3c287d4b51bf61b13a312bd81d3cb93
- First indexed
- 2026-06-08 13:51:58
- Last updated
- 2026-09-03 00:35:44
Antivirus detections
| Engine | Detection |
| APEX | Malicious |
| AVG | Win32:MalwareX-gen [Wrm] |
| AhnLab-V3 | Trojan/Win.Vindor.C5396380 |
| Alibaba | Worm:Win32/AutoRun.147c |
| Antiy-AVL | Trojan/Win32.Wacatac |
| Arcabit | Trojan.Mint.Autorunner.1 |
| Avast | Win32:MalwareX-gen [Wrm] |
| Avira | TR/Dropper.Gen |
| BitDefender | Gen:Heur.Mint.Autorunner.1 |
| Bkav | W32.Malware.8FF32464 |
| CAT-QuickHeal | W32.Vindor.B3 |
| CTX | exe.unknown.autorunner |
| ClamAV | Win.Malware.Hoax-10029094-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | Win32.HLLW.Autoruner.547 |
| ESET-NOD32 | Win32/VB.NAR virus |
| Elastic | malicious (high confidence) |
| Emsisoft | Gen:Heur.Mint.Autorunner.1 (B) |
| F-Secure | Trojan.TR/Dropper.Gen |
| Fortinet | W32/AutoRun.RPV!worm |
| GData | Win32.Worm.Pajetbin.A |
| Google | Detected |
| Gridinsoft | Trojan.Win32.Wacatac.oa!s1 |
| Jiangmin | Worm.AutoRun.avtq |
| K7AntiVirus | Virus ( 0040f57d1 ) |
| K7GW | Trojan ( 00558d391 ) |
| Kaspersky | Worm.Win32.AutoRun.vx |
| Kingsoft | malware.kb.a.992 |
| Lionic | Worm.Win32.AutoRun.o!c |
| Malwarebytes | VB.Trojan.Generic.DDS |
| MaxSecure | Trojan.Malware.121218.susgen |
| McAfeeD | ti!1A9301236637 |
| MicroWorld-eScan | Gen:Heur.Mint.Autorunner.1 |
| Microsoft | Worm:Win32/AutoRun!pz |
| NANO-Antivirus | Trojan.Win32.AutoRun.bqzoew |
| Paloalto | generic.ml |
| Panda | W32/PJTbinder.A |
| Rising | Worm.VB!1.DA41 (CLASSIC) |
| Sangfor | Suspicious.Win32.Save.ins |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.AutoRun.th |
| Sophos | W32/Fakefire-A |
| Symantec | W32.Pajetbin |
| TACHYON | Banker/W32.Banbra.Gen |
| Tencent | Worm.Win32.AutoRun.acc |
| Trapmine | malicious.high.ml.score |
| TrellixENS | GenericRXAA-AA!B8B834F36512 |
| TrendMicro | WORM_AUTORUN.BTM |
| TrendMicro-HouseCall | WORM_AUTORUN.BTM |
| VBA32 | Worm.AutoRun |
| VIPRE | Gen:Heur.Mint.Autorunner.1 |
| Varist | W64/Ipamor.CZ.gen!Eldorado |
| ViRobot | Worm.Win32.Autorun.18432.T |
| VirIT | Win32.Vindor.B |
| Xcitium | TrojWare.Win32.Downloader.Agent.cmak@48ubj9 |
| Yandex | Trojan.GenAsa!g8z8LT30jj4 |
| ZoneAlarm | W32/Fakefire-A |
| Zoner | Trojan.Win32.113127 |
| alibabacloud | Trojan:Win/AutoRun.CK(dyn) |
| huorong | Virus/VBcode.b@U |
| tehtris | Generic.Malware |