tmpyx_mdevg

Classification: Malicious

tmpyx_mdevg is a malicious file sample. Linked to Pwdump malware. Reported by 1 threat source, last seen 2020-02-23. Detected by 47 antivirus engines.

Detection summary

  • 47 antivirus detections (64% detection ratio)
  • 0 IDS alerts
  • 1 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: PWDUMP (S0006)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
PWDump Hybrid-Analysis 2020-02-23 00:30:17 2020-02-23 00:30:17 S0006 pwdump

Tags

anthem apt deepanda fgdump hacktool pos pwdump

Sample information

Filenames
tmpyx_mdevg
File type
PE32 executable (console) Intel 80386, for MS Windows
Size
345600 bytes
MD5
a47f07515b09d7afd1b10784e8fb6d14
SHA-1
ad41f718ad76596314e367d25a2eaaea3e7a7aac
SHA-256
4ed78e0a69defeac5ae4b38dcea2346e326285a75adf331ef701153c048e59c8
First indexed
2020-02-23 00:30:17
Last updated
2025-10-10 18:17:31

Antivirus detections

EngineDetection
BkavW32.AIDetectVM.malware
DrWebTool.Pwdump.189
FireEyeGeneric.mg.a47f07515b09d7af
CAT-QuickHealHackTool.PWDump
McAfeeArtemis!A47F07515B09
ZillyaTool.PWDump.Win32.427
SangforMalware
AlibabaHackTool:Win32/PWDump.8a2a4c54
Cybereasonmalicious.8ad765
Invinceaheuristic
CyrenW32/Risk.GDQT-5682
SymantecML.Attribute.HighConfidence
ClamAVWin.Trojan.Pwdump-78
Kasperskynot-a-virus:PSWTool.Win64.PWDump.t
NANO-AntivirusRiskware.Win32.Pwdump.exnvgf
AegisLabTrojan.Multi.Generic.4!c
AvastWin64:Malware-gen
RisingTrojan.Win32.Generic.14B46F00 (C64:YzY0OtLxeS4cafca)
ComodoMalware@#uewe6gg28pob
F-SecurePrivacyRisk.SPR/PWDum.A
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.fh
FortinetRiskware/PWDump
Trapminemalicious.moderate.ml.score
SophosPWDump (PUA)
IkarusHackTool.Win64
F-ProtW32/MalwareS.BJUN
JiangminPSWTool.PWDump.b
AviraSPR/PWDum.A
MAXmalware (ai score=96)
Antiy-AVLTrojan[PSWTool]/Win32.PWDump
Endgamemalicious (high confidence)
MicrosoftHackTool:Win32/PWDump.C
ViRobotPSWTool.PWDump.345600
ZoneAlarmnot-a-virus:PSWTool.Win64.PWDump.t
VBA32Trojan.Genome.af
CylanceUnsafe
APEXMalicious
ESET-NOD32a variant of Win32/PSWTool.PWDump6.G potentially unsafe
YandexTrojan.PWDum!1VGf3lPlzqc
SentinelOneDFI - Malicious PE
eGambitHackTool.Samples
MaxSecureTrojan.Malware.9422136.susgen
AVGWin64:Malware-gen
PandaTrj/Passtealer.LR
CrowdStrikewin/malicious_confidence_70% (D)
Qihoo-360HEUR/QVM19.1.6939.Malware.Gen

Process list

NameCommand line
tmpyx_mdevg.exe