92b81afb69efbe857c74d07e464b4097.exe
Classification: Malicious
92b81afb69efbe857c74d07e464b4097.exe is a malicious file sample. Linked to Runningrat malware. Reported by 1 threat source, last seen 2021-03-29.
Detection summary
- 58 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: RUNNINGRAT (S0253)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| RunningRAT | Abuse.ch | 2021-03-29 07:10:39 | 2021-03-29 07:10:39 | malicious-activity | S0253 RunningRAT |
Sample information
- Filenames
- 92b81afb69efbe857c74d07e464b4097.exe
- File type
- application/x-dosexec
- MD5
92b81afb69efbe857c74d07e464b4097- SHA-1
7d3e80fd056e5ff2ed522220af3980f80572ad4f- SHA-256
3f201f2578b5c9ce1a2d0deb31f79409b8da7e4c4c993e047f9c683b27783d25- First indexed
- 2021-03-29 08:15:17
- Last updated
- 2025-10-24 16:27:16
Antivirus detections
| Engine | Detection |
|---|---|
| Bkav | W32.FamVT.Renamer1.Trojan |
| Elastic | malicious (high confidence) |
| DrWeb | Trojan.DownLoader23.39271 |
| MicroWorld-eScan | Trojan.GenericKD.40455963 |
| FireEye | Generic.mg.92b81afb69efbe85 |
| McAfee | GenericRXBH-NF!92B81AFB69EF |
| Zillya | Trojan.Siscos.Win32.4780 |
| SUPERAntiSpyware | Adware.Farli/Variant |
| Sangfor | Trojan.Win32.Save.a |
| K7AntiVirus | Trojan ( 00522d7f1 ) |
| K7GW | Trojan ( 00522d7f1 ) |
| Cybereason | malicious.b69efb |
| BitDefenderTheta | Gen:NN.ZexaF.34654.hy0@am1sDGne |
| Cyren | W32/Siscos.E.gen!Eldorado |
| Symantec | ML.Attribute.HighConfidence |
| ESET-NOD32 | Win32/Farfli.CEN |
| APEX | Malicious |
| Avast | Win32:Trojan-gen |
| ClamAV | Win.Dropper.Gh0stRAT-6997745-0 |
| Kaspersky | Trojan.Win32.Siscos.wbm |
| BitDefender | Trojan.GenericKD.40455963 |
| NANO-Antivirus | Trojan.Win32.Siscos.enrcbv |
| Tencent | Malware.Win32.Gencirc.10b0cbd2 |
| Ad-Aware | Trojan.GenericKD.40455963 |
| Sophos | ML/PE-A + Troj/AutoG-AD |
| Comodo | TrojWare.Win32.GameThief.Magania.~NWABU@18g2sq |
| VIPRE | Trojan.Win32.Generic!BT |
| TrendMicro | BKDR_ZEGOST.SM35 |
| McAfee-GW-Edition | GenericRXBH-NF!92B81AFB69EF |
| Emsisoft | Trojan.Farfli (A) |
| SentinelOne | Static AI - Suspicious PE |
| GData | Trojan.GenericKD.40455963 |
| Jiangmin | Trojan.Siscos.cd |
| eGambit | Trojan.Generic |
| Avira | TR/AD.Farfli.cznig |
| MAX | malware (ai score=85) |
| Gridinsoft | Trojan.Win32.Agent.vb!n |
| Arcabit | Trojan.Generic.D2694F1B |
| ViRobot | Trojan.Win32.Agent.114688.DM |
| Microsoft | Backdoor:Win32/Venik!rfn |
| Cynet | Malicious (score: 100) |
| AhnLab-V3 | Trojan/Win32.Siscos.R199489 |
| Acronis | suspicious |
| VBA32 | Trojan.Siscos |
| ALYac | Trojan.GenericKD.40455963 |
| TACHYON | Trojan/W32.Agent.114688.DJP |
| Malwarebytes | Backdoor.Farfli |
| Zoner | Trojan.Win32.90956 |
| TrendMicro-HouseCall | BKDR_ZEGOST.SM35 |
| Rising | Trojan.Farfli!1.C639 (KTSE) |
| Yandex | Trojan.GenAsa!I74Hu0e5Xnc |
| Ikarus | Trojan.Win32.Farfli |
| Fortinet | W32/Siscos.WBM!tr |
| Webroot | W32.Siscos |
| AVG | Win32:Trojan-gen |
| Panda | Trj/Genetic.gen |
| CrowdStrike | win/malicious_confidence_80% (D) |
| Qihoo-360 | Win32/Backdoor.Venik.HwcBNEsA |