2026-03-05_9712aeaf38c449d6188cbf33b14d3ae4_coinminer_frostygoop_hive_luca-stealer_salatstealer_sliver
Classification: Malicious
2026-03-05_9712aeaf38c449d6188cbf33b14d3ae4_coinminer_frostygoop_hive_luca-stealer_salatstealer_sliver is a malicious file sample. Linked to Hydraq malware.
Detection summary
- 38 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: HYDRAQ (S0203)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Aurora | Triage | 2026-03-06 00:30:23 | 2026-03-06 00:30:23 | malicious-activity | S0203 Hydraq |
Tags
aurora stealerSample information
- Filenames
- 2026-03-05_9712aeaf38c449d6188cbf33b14d3ae4_coinminer_frostygoop_hive_luca-stealer_salatstealer_sliver
- MD5
9712aeaf38c449d6188cbf33b14d3ae4- SHA-1
1cf5f593436c34c89237cb8607f1da7bf2d540c1- SHA-256
5059d73e344d192d9ec88a51391a0a9e6a1bd206788591c954684180a31cc104- SHA-512
85ebc5e0ebba0639ad2426c017c17b725ab3d6528cb5a9ff13ec1e1b61a0ef6ec06d0b07be24b438e6ddeaa1f06c9485d457eb6258a67fe6bc481d5ee1212b08- First indexed
- 2026-03-06 00:30:23
- Last updated
- 2026-03-06 00:30:23
Antivirus detections
| Engine | Detection |
|---|---|
| APEX | Malicious |
| AVG | FileRepMalware [Trj] |
| Antiy-AVL | GrayWare/Win32.Kryptik.pe |
| Avast | FileRepMalware [Trj] |
| Bkav | W64.AIDetectMalware |
| CAT-QuickHeal | Trojan.Ghanarava.17727557044d3ae4 |
| CTX | exe.trojan.generic |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| ESET-NOD32 | WinGo/Kryptik.BP trojan |
| Elastic | malicious (high confidence) |
| GData | Win32.Trojan-Stealer.AuroraStealer.ODU7RX |
| Detected | |
| Gridinsoft | Trojan.Heur!.02006123 |
| Ikarus | Trojan.Win64.Meterpreter |
| Jiangmin | Trojan.PSW.Agent.dct |
| K7AntiVirus | Password-Stealer ( 005ea3431 ) |
| K7GW | Password-Stealer ( 005ea3431 ) |
| Kaspersky | UDS:Trojan-PSW.Win64.Coins.eri |
| Kingsoft | Win32.Trojan.Convagent.gen |
| Lionic | Trojan.Win64.Coins.tseu |
| Malwarebytes | Malware.AI.13958958 |
| McAfeeD | ti!5059D73E344D |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| Paloalto | generic.ml |
| Sangfor | Trojan.Win32.Agent.Vyl1 |
| SentinelOne | Static AI - Suspicious PE |
| Sophos | Mal/Generic-S |
| Symantec | ML.Attribute.HighConfidence |
| Tencent | Malware.Win32.Gencirc.1433f4a3 |
| Trapmine | malicious.high.ml.score |
| TrellixENS | Artemis!9712AEAF38C4 |
| Webroot | W32.Trojan.Genkd |
| Zillya | Trojan.Coins.Win64.47 |
| alibabacloud | Trojan:Multi/Wacatac.B9nj |
| huorong | VirTool/Obfuscator.afy |