test.test
Classification: Malicious
test.test is a malicious file sample. Linked to Squirrelwaffle malware. Reported by 1 threat source, last seen 2021-09-23. Detected by 51 antivirus engines.
Detection summary
- 51 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SQUIRRELWAFFLE (S1030)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic.Malware | Abuse.ch | 2021-09-23 19:20:58 | 2021-09-23 19:20:58 | malicious-activity | |
| Squirrelwaffle | Abuse.ch | 2021-09-23 19:20:58 | 2021-09-23 19:20:58 | malicious-activity | S1030 Squirrelwaffle |
Sample information
- Filenames
- test.test
- File type
- application/x-dosexec
- MD5
539e0a32348f112da72bb7868fd5cfac- SHA-1
bcdfd82522a0a45af4e4064c7f509b29b8ea83ed- SHA-256
4545b601c6d8a636dce6597da6443dce45d11b48fcf668336bcdf12ffdc3e97e- First indexed
- 2021-09-23 20:15:07
- Last updated
- 2026-04-22 19:13:57
Antivirus detections
| Engine | Detection |
|---|---|
| Lionic | Trojan.Win32.Qbot.7!c |
| Elastic | malicious (high confidence) |
| Cynet | Malicious (score: 100) |
| McAfee | RDN/Squirrelwaffle |
| Cylance | Unsafe |
| Sangfor | Suspicious.Win32.Save.a |
| CrowdStrike | win/malicious_confidence_80% (W) |
| Alibaba | Trojan:Win32/GenKryptik.e009c0a9 |
| K7GW | Trojan ( 00587f7c1 ) |
| K7AntiVirus | Trojan ( 00587f7c1 ) |
| ESET-NOD32 | a variant of Win32/Kryptik.HMPI |
| APEX | Malicious |
| Paloalto | generic.ml |
| Kaspersky | Trojan.Win32.Agent.xaivan |
| BitDefender | Trojan.GenericKD.47028994 |
| NANO-Antivirus | Trojan.Win32.Squirrelwaffle.jcjact |
| MicroWorld-eScan | Trojan.GenericKD.47028994 |
| Avast | Win32:MalwareX-gen [Trj] |
| Ad-Aware | Trojan.GenericKD.47028994 |
| Sophos | Mal/EncPk-APW |
| Comodo | Malware@#1ywko8vups8qo |
| DrWeb | Trojan.DownLoader43.22421 |
| McAfee-GW-Edition | RDN/Squirrelwaffle |
| FireEye | Generic.mg.539e0a32348f112d |
| Emsisoft | Trojan.GenericKD.47028994 (B) |
| Ikarus | Trojan.Win32.Krypt |
| MAX | malware (ai score=85) |
| Kingsoft | Win32.Troj.Undef.(kcloud) |
| Microsoft | Trojan:Win32/Casdet!rfn |
| GData | Win32.Trojan-Downloader.Squirrelwaffle.PM2SE0 |
| VBA32 | Malware-Cryptor.Limpopo |
| ALYac | Trojan.GenericKD.47028994 |
| Malwarebytes | Malware.AI.1547717369 |
| TrendMicro-HouseCall | Trojan.Win32.SQUIRRELWAFFLE.YXBIXZ |
| Rising | [email protected] (RDML:eLpZhFnCvmBV7aF9eidYlQ) |
| SentinelOne | Static AI - Malicious PE |
| Fortinet | W32/Kryptik.HLAD!tr |
| BitDefenderTheta | Gen:NN.ZedlaF.34170.nq6@ae217Kci |
| AVG | Win32:MalwareX-gen [Trj] |
| Panda | Trj/CI.A |
| Symantec | ML.Attribute.HighConfidence |
| ESET-NOD32 | a variant of Win32/GenKryptik.FLBW |
| Kaspersky | UDS:Trojan.Win32.Agent |
| Sophos | Mal/Generic-R + Mal/EncPk-APW |
| McAfee-GW-Edition | BehavesLike.Win32.Generic.dt |
| Microsoft | Trojan:Script/Phonzy.B!ml |
| ZoneAlarm | UDS:DangerousObject.Multi.Generic |
| CrowdStrike | win/malicious_confidence_80% (D) |
| Kaspersky | VHO:Trojan-Banker.Win32.Qbot.gen |
| Microsoft | Trojan:Win32/Sabsik.FL.B!ml |
| McAfee | Artemis!539E0A32348F |