1cbb12654ff62f84001adea3c5326873e54d7c81eca250dfc26cf0fffafdebfd.bin
Classification: Malicious
1cbb12654ff62f84001adea3c5326873e54d7c81eca250dfc26cf0fffafdebfd.bin is a malicious file sample. Reported by 2 threat sources, last seen 2026-04-15.
Detection summary
- 57 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2026-04-15 04:45:05 |
2026-04-15 05:45:08 |
|
|
| Xworm |
Triage |
2026-04-15 04:06:41 |
2026-04-15 04:06:41 |
malicious-activity
|
|
Tags
evasive
njrat
windows-server-utility
xworm
discovery
persistence
rat
trojan
Sample information
- Filenames
- 1cbb12654ff62f84001adea3c5326873e54d7c81eca250dfc26cf0fffafdebfd.bin, x1cbb12654ff62f84001adea3c5326873e54d7c81eca250dfc26cf0fffafdebfd.exe
- File type
- PE32+ executable for MS Windows 6.00 (GUI), x86-64 ...
- MD5
6c058f8f77d04aa11b725ab4776e1378
- SHA-1
de0f1c97e6ab4acf5d86791f10bd72b163e09f23
- SHA-256
1cbb12654ff62f84001adea3c5326873e54d7c81eca250dfc26cf0fffafdebfd
- First indexed
- 2026-04-15 04:06:41
- Last updated
- 2026-09-03 00:54:36
Antivirus detections
| Engine | Detection |
| ALYac | Application.GenericFCA.7446 |
| APEX | Malicious |
| AVG | Win32:MalwareX-gen [Misc] |
| AhnLab-V3 | Backdoor/Win.XWorm.R719793 |
| Alibaba | Trojan:Win64/Xworm.6e2be02d |
| Antiy-AVL | Trojan/Win64.XWorm |
| Arcabit | Application.GenericFCA.D1D16 |
| Avast | Win32:MalwareX-gen [Misc] |
| BitDefender | Application.GenericFCA.7446 |
| CTX | exe.trojan.generic |
| ClamAV | Win.Packed.njRAT-10002074-1 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.Inject6.1996 |
| ESET-NOD32 | Win64/Kryptik.FQF trojan |
| Elastic | malicious (high confidence) |
| Emsisoft | Application.GenericFCA.7446 (B) |
| F-Secure | Trojan.TR/W64.Evo |
| Fortinet | W64/Xworm.AXW!tr |
| GData | Application.GenericFCA.7446 |
| Google | Detected |
| Gridinsoft | Trojan.Win64.Agent.oa!s1 |
| Ikarus | Trojan.MSIL.Agent |
| Jiangmin | Worm.MSIL.yhc |
| K7AntiVirus | EmailWorm ( 006d59ec1 ) |
| K7GW | EmailWorm ( 006d59ec1 ) |
| Kaspersky | Trojan.Win32.Agent.xcbixa |
| Kingsoft | MSIL.Backdoor.XClient.gen |
| Malwarebytes | Backdoor.Agent |
| McAfeeD | Trojan:Win/Spybotnet.EAB |
| MicroWorld-eScan | Application.GenericFCA.7446 |
| Microsoft | Trojan:Win64/Xworm.ZBO!MTB |
| NANO-Antivirus | Trojan.Win64.Kryptik.leplwv |
| Paloalto | generic.ml |
| Panda | Trj/CI.A |
| Rising | Backdoor.XWorm!1.129F7 (CLASSIC) |
| SUPERAntiSpyware | Backdoor.Bot/Variant |
| Sangfor | Trojan.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Sophos | Mal/Generic-S |
| Symantec | Downloader.XWorm!gen4 |
| TACHYON | Backdoor/W64.Agent.574480 |
| Tencent | Trojan.Msil.Xworm.16001415 |
| Trapmine | malicious.high.ml.score |
| TrendMicro | Trojan.Win64.XWORM.SMTPTVLNT |
| TrendMicro-HouseCall | Trojan.Win64.XWORM.SMTPTVLNT |
| VBA32 | Trojan.Agent |
| VIPRE | Application.GenericFCA.7446 |
| Varist | W64/ARisk.GS |
| ViRobot | Trojan.Win.Z.Kryptik.574480.A |
| VirIT | Trojan.Win32.NSISGenT.AFHP |
| Webroot | W32.Malware.gen |
| Yandex | Trojan.Kryptik!yivpSFQwWhY |
| alibabacloud | Backdoor:Win/XWorm.gyf |
| huorong | Backdoor/XWorm.c |