Classification: Malicious
tmph7cssxgp is a malicious file sample. Reported by 2 threat sources, last seen 2026-06-01. Detected by 37 antivirus engines.
Detection summary
- 37 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Hijackloader |
Triage |
2026-05-24 14:43:44 |
2026-06-01 14:30:20 |
malicious-activity
|
|
| HijackLoader |
MalwareBazaar Abuse.ch |
2025-06-04 09:36:16 |
2025-06-04 09:36:16 |
malicious-activity
|
|
Sample information
- Filenames
- tmph7cssxgp, tmprtlngnet, LUNSTPZI.zip
- File type
- application/zip
- MD5
0bd23f1d397e186c45124a359344cdd6
- SHA-1
2e7fbfc50f464448b0a81cae68257b2266e6ec18
- SHA-256
4b99ae2493225d2378fdec07c2db80bfa5dc404ea5f87a33dbcfb6378d721836
- First indexed
- 2025-06-05 09:54:24
- Last updated
- 2026-09-03 00:35:57
Antivirus detections
| Engine | Detection |
| ALYac | Gen:Variant.Jaik.292260 |
| AVG | Other:Malware-gen [Trj] |
| AhnLab-V3 | Trojan/Win.Malware-gen.C5785619 |
| Alibaba | TrojanDownloader:Win32/DllHijack.0edf486a |
| Antiy-AVL | Trojan[Downloader]/Win32.Rugmi |
| Arcabit | Trojan.Generic.D490100C |
| Avast | Other:Malware-gen [Trj] |
| BitDefender | Trojan.GenericKD.76550156 |
| CAT-QuickHeal | Trojan.Ghanarava.1766872758ef4b31 |
| CTX | zip.trojan.rugmi |
| Cynet | Malicious (score: 99) |
| ESET-NOD32 | Win32/TrojanDownloader.Rugmi.AAN trojan |
| Emsisoft | Trojan.GenericKD.76550156 (B) |
| Fortinet | W32/Rugmi.AAN!tr.dldr |
| GData | Trojan.GenericKD.76550156 |
| Google | Detected |
| Ikarus | Trojan-Downloader.Win32.Rugmi |
| Jiangmin | Trojan.Generic.humxy |
| K7AntiVirus | Trojan-Downloader ( 005ce22e1 ) |
| K7GW | Trojan-Downloader ( 005ce22e1 ) |
| Kaspersky | Trojan.Win32.DllHijack.wks |
| Lionic | Trojan.ZIP.Rugmi.4!c |
| Malwarebytes | Trojan.PyengyLoader |
| MicroWorld-eScan | Trojan.GenericKD.76550156 |
| Rising | Downloader.Rugmi!1.1337F (CLASSIC) |
| Skyhigh | Artemis!Trojan |
| Sophos | Mal/Generic-S |
| Symantec | Trojan.Gen.NPE |
| Tencent | Malware.Win32.Gencirc.149579c9 |
| TrellixENS | Artemis!58848006F1AE |
| TrendMicro | TROJ_GEN.R002C0DLG25 |
| VBA32 | Trojan.Etset |
| VIPRE | Trojan.GenericKD.76550156 |
| Varist | W32/ABTrojan.BYJM-1580 |
| VirIT | Trojan.Win32.Genus.YMM |
| Zillya | Downloader.RugmiAGen.Win32.24 |
| alibabacloud | Trojan:Win/Rugmi.AMS |