2026-03-14_1785faf841354f0a7ba4eaa16caf9c9f_coinminer_glassworm_icedid_njrat_ryuk_sliver

Classification: Malicious

2026-03-14_1785faf841354f0a7ba4eaa16caf9c9f_coinminer_glassworm_icedid_njrat_ryuk_sliver is a malicious file sample. Detected by 33 antivirus engines.

Detection summary

  • 33 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Meshagent Triage 2026-03-14 17:15:09 2026-03-14 17:15:09 malicious-activity

Tags

meshagent test

Sample information

Filenames
2026-03-14_1785faf841354f0a7ba4eaa16caf9c9f_coinminer_glassworm_icedid_njrat_ryuk_sliver
MD5
1785faf841354f0a7ba4eaa16caf9c9f
SHA-1
fafe5e6cc114b6baf95d275bdf16c17717ee98bb
SHA-256
37870b35bf7606391b43886ccd8445ce44a7b41bbdc3cb1f4896d2e629b6363a
SHA-512
08f7ee5c41cc6a2be54a885a228ed3b5db2fb9881899948f83dd183a4c4dcec8f86eefbb61aa3abbfc70ae66876d0323e15b371ca2f0aef730ae5531d8ba4005
First indexed
2026-03-14 17:15:09
Last updated
2026-09-03 01:01:40

Antivirus detections

EngineDetection
AhnLab-V3Unwanted/Win.MeshCmd.R702482
Antiy-AVLRiskWare[RemoteAdmin]/Win32.MeshAgent
BkavW32.Malware.97487579
CAT-QuickHealPUA.MeshAgent.S37934379
CTXexe.remote-access-trojan.meshagent
CrowdStrikewin/grayware_confidence_60% (D)
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebProgram.MeshAgent.3
Elasticmalicious (high confidence)
FortinetRiskware/Application
GoogleDetected
GridinsoftRisk.Win64.Gen.oa!s1
K7AntiVirusRemoteTool ( 005cedd21 )
K7GWRemoteTool ( 005cedd21 )
Kasperskynot-a-virus:UDS:RemoteAdmin.Win32.MeshAgent.gen
KingsoftWin32.HACKTOOL.RemoteAdmin.v
LionicRiskware.Win32.MeshAgent.1!c
MalwarebytesMalware.AI.1335020330
MaxSecureTrojan.Malware.74716356.susgen
McAfeeDti!37870B35BF76
MicrosoftTrojan:Win32/Qwexlafiba!rfn
Paloaltogeneric.ml
SangforPUP.Win32.Meshagent.V1rl
SentinelOneStatic AI - Suspicious PE
SophosGeneric Reputation PUA (PUA)
SymantecPUA.Gen.2
TrellixENSRemote-MeshAgent.a
TrendMicro-HouseCallTrojan.Win32.ZYX.USBLG326
VBA32Riskware.Win64.MeshAgent
VaristW64/ABlApplication.BXEP-1452
WebrootWin.Trojan.Gen
alibabacloudBackdoor[rat]:Win/MeshAgent.gyf