2026-06-12_92bc3b1ba378c14e601c4e617ec7c422_hive
Classification: Malicious
2026-06-12_92bc3b1ba378c14e601c4e617ec7c422_hive is a malicious file sample. Linked to Frp malware. Reported by 3 threat sources, last seen 2026-06-12.
Detection summary
- 50 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: FRP (S1144)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Triage | 2026-06-12 14:38:08 | 2026-06-12 14:38:08 | malicious-activity | |
| FireCrypt | ThreatFox Abuse.ch | 2026-06-11 23:20:59 | 2026-06-11 23:25:04 | ||
| FRP | MalwareBazaar Abuse.ch | 2026-06-11 19:40:25 | 2026-06-11 19:40:25 | malicious-activity | S1144 FRP |
Tags
win.firecrypt upxSample information
- Filenames
- 2026-06-12_92bc3b1ba378c14e601c4e617ec7c422_hive, _frpc_upx_small.exe
- MD5
92bc3b1ba378c14e601c4e617ec7c422- SHA-1
e7026b2f6adadbf070e9926e1d4b79a65044cd5c- SHA-256
3d008cb4d346a95396868f786ec6d4fe7e12a0451768f957664abba7469f2cf0- First indexed
- 2026-06-11 19:40:25
- Last updated
- 2026-07-13 01:28:02
Antivirus detections
| Engine | Detection |
|---|---|
| APEX | Malicious |
| AVG | Win64:Malware-gen |
| Alibaba | Trojan:Win32/frp_tools.5b9b3998 |
| Antiy-AVL | RiskWare[NetTool]/Win64.Frp |
| Avast | Win64:Malware-gen |
| Avira | TR/W64.Malware |
| CrowdStrike | win/malicious_confidence_60% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| ESET-NOD32 | WinGo/Riskware.Frp.AA application |
| Elastic | malicious (moderate confidence) |
| F-Secure | Trojan.TR/W64.Malware |
| GData | Win64.Application.Agent.9QJA2A |
| Detected | |
| Ikarus | PUA.RiskWare.Frp |
| K7AntiVirus | Riskware ( 005cdeb11 ) |
| K7GW | Riskware ( 005cdeb11 ) |
| Kaspersky | not-a-virus:HEUR:NetTool.Win64.FRP.gen |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfeeD | ti!3D008CB4D346 |
| Microsoft | Trojan:Win32/Sabsik.EN.A!ml |
| Paloalto | generic.ml |
| SentinelOne | Static AI - Malicious PE |
| Sophos | Fast Reverse Proxy (PUA) |
| Symantec | ML.Attribute.HighConfidence |
| Tencent | Malware.Win32.Gencirc.144b9f6d |
| Varist | W64/ABApplication.PGGM-1012 |
| alibabacloud | Proxytool:Multi/Frp.client |
| ALYac | Application.Generic.36850175 |
| Alibaba | Trojan:Win32/frp_tools.5a3d0a39 |
| Arcabit | Application.Generic.D23249FF |
| BitDefender | Application.Generic.36850175 |
| CTX | exe.trojan.generic |
| Emsisoft | Application.Generic.36850175 (B) |
| Fortinet | Riskware/Frp |
| GData | Application.Generic.36850175 |
| Lionic | Riskware.Win32.FRP.1!c |
| MicroWorld-eScan | Application.Generic.36850175 |
| Microsoft | Trojan:Win32/Kepavll!rfn |
| Panda | Trj/PhxBzA.A |
| Rising | Hacktool.Frp!8.1336B (CLOUD) |
| Sangfor | Riskware.Win64.Frp.Vcr0 |
| Symantec | PUA.Gen.2 |
| TrellixENS | Artemis!92BC3B1BA378 |
| TrendMicro | Trojan.Win32.ZYX.USBLFC26 |
| TrendMicro-HouseCall | Trojan.Win32.ZYX.USBLFC26 |
| VBA32 | Trojan.Win64.Frp |
| VIPRE | Application.Generic.36850175 |
| alibabacloud | Proxytool:Golang/Frpc.gen |