2026-05-04_1255cfdd42e25f0cdb0f3f60dd6686a7_elex_wannacry
Classification: Malicious
2026-05-04_1255cfdd42e25f0cdb0f3f60dd6686a7_elex_wannacry is a malicious file sample. Linked to Poisonivy malware. Detected by 34 antivirus engines.
Detection summary
- 34 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: POISONIVY (S0012)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Poisonivy | Triage | 2026-05-04 10:22:07 | 2026-05-04 10:22:07 | malicious-activity | S0012 PoisonIvy |
Tags
poisonivy discovery ratSample information
- Filenames
- 2026-05-04_1255cfdd42e25f0cdb0f3f60dd6686a7_elex_wannacry
- SHA-256
4930aebf58d8972185a5771abac1c1f4475e15cb02b3b15505904b1e41d4036b- First indexed
- 2026-05-04 10:22:07
- Last updated
- 2026-09-03 03:39:14
Antivirus detections
| Engine | Detection |
|---|---|
| AVG | Dropper.Agent.BFKA |
| AhnLab-V3 | Win32/IRCBot2.worm.Gen |
| AntiVir | TR/Dropper.Gen |
| Avast | Win32:Bifrose-ECX [Trj] |
| BitDefender | Gen:Variant.Zusy.Elzob.13057 |
| ClamAV | Win.Trojan.Bifrose-2790 |
| Commtouch | W32/Trojan.XHEC-8108 |
| Comodo | TrojWare.Win32.Trojan.XPack.~gen1 |
| DrWeb | Trojan.Siggen5.39499 |
| ESET-NOD32 | a variant of Win32/Injector.ADUO |
| Emsisoft | Gen:Variant.Zusy.Elzob.13057 (B) |
| F-Secure | Gen:Variant.Zusy.Elzob.13057 |
| Fortinet | W32/Bifrose.ECX!tr.bdr |
| GData | Gen:Variant.Zusy.Elzob.13057 |
| Ikarus | VirTool.Win32.CeeInject |
| Jiangmin | Backdoor/Agent.bxsv |
| Kaspersky | Trojan-Dropper.Win32.Agent.dtkj |
| Kingsoft | Win32.Hack.AgentT.wu.311296 |
| Malwarebytes | Backdoor.Bifrose |
| McAfee | RDN/BackDoor-DKI!c |
| McAfee-GW-Edition | Heuristic.BehavesLike.Win32.Suspicious-BAY.K |
| MicroWorld-eScan | Gen:Variant.Zusy.Elzob.13057 |
| Microsoft | VirTool:Win32/Injector.gen!R |
| Norman | Bifrose.BUWA |
| Panda | Trj/Genetic.gen |
| Rising | Trojan.Win32.Nodef.kge |
| Sophos | Troj/Inject-IK |
| Symantec | Trojan.Dropper |
| TrendMicro | TROJ_INJECTOR_0000065.TOMA |
| TrendMicro-HouseCall | TROJ_INJECTOR_0000065.TOMA |
| VBA32 | SScope.Trojan.Buzus.ce |
| VIPRE | Backdoor.Win32.Bifrose.brcn (v) |
| ViRobot | Backdoor.Win32.Bifrose.8192.E |
| nProtect | Backdoor/W32.Poison.16384.AO |