CrimsonMods.exe
Classification: Malicious
CrimsonMods.exe is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-05. IoC context and downloadable threat intel on Maltiverse.
Detection summary
- 0 antivirus detections
- 10 IDS alerts
- 0 processes observed
- 5 contacted hosts
- 5 DNS requests
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Suspicious Sample | Triage | 2026-09-05 17:09:52 | 2026-09-05 17:09:52 | anomalous-activity | |
| Generic Malware | Hybrid-Analysis | 2026-09-03 18:45:04 | 2026-09-03 18:45:04 | malicious-activity |
Tags
defense_evasion discovery execution spyware stealer trojanSample information
- Filenames
- CrimsonMods.exe
- File type
- PE32 executable for MS Windows 4.00 (GUI), Intel i ...
- MD5
734da0911f97081a34ff420f64946d47- SHA-1
184727b68332b28dd04ffbb182c7e3fc6936e287- SHA-256
4a306628286c4fa614f438f502cc9fe31ae1fdcb3453eb9e25062d39b01fbf28- First indexed
- 2026-09-03 18:13:58
- Last updated
- 2026-09-05 17:27:37
Network contacts
104.16.185.241 34.117.59.81 34.160.111.145 172.67.74.152 149.154.166.110
DNS requests
api.ipify.org api.telegram.org icanhazip.com ifconfig.me ipinfo.io