x53d4cbf05ac5129ae0214b088e09e5dc12367e18953d276e3185c3de200a5895.exe
Classification: Malicious
x53d4cbf05ac5129ae0214b088e09e5dc12367e18953d276e3185c3de200a5895.exe is a malicious file sample. Linked to Dcrat malware. Detected by 55 antivirus engines.
Detection summary
- 55 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 1 DNS requests
MITRE ATT&CK associations
Malware families: DCRAT (S9017)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Hybrid-Analysis | 2026-05-27 00:45:04 | 2026-05-27 00:45:04 | ||
| Dcrat | Triage | 2026-05-27 00:02:50 | 2026-05-27 00:02:50 | malicious-activity | S9017 DCRAT |
Tags
evasive windows-server-utility dcrat defense_evasion discovery execution infostealer persistence rat trojanSample information
- Filenames
- x53d4cbf05ac5129ae0214b088e09e5dc12367e18953d276e3185c3de200a5895.exe, 53d4cbf05ac5129ae0214b088e09e5dc12367e18953d276e3185c3de200a5895.bin
- File type
- PE32 executable for MS Windows 5.00 (GUI), Intel i ...
- MD5
e62e9a5ad2653b6f7da321f0856f36bf- SHA-1
2f78f2974fd97ac35dbdd55106381b1acc9e2234- SHA-256
53d4cbf05ac5129ae0214b088e09e5dc12367e18953d276e3185c3de200a5895- First indexed
- 2026-05-27 00:02:50
- Last updated
- 2026-09-02 15:26:45
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Trojan.Agent.GQAF |
| APEX | Malicious |
| AVG | Win32:Evo-gen [Trj] |
| AhnLab-V3 | Backdoor/Win.DCRat.R715971 |
| Alibaba | Trojan:Win32/DCRat.b8d1a200 |
| Antiy-AVL | Trojan/Win32.DCRat |
| Arcabit | Trojan.Agent.GQAF |
| Avast | Win32:Evo-gen [Trj] |
| Avira | TR/W32.Evo |
| BitDefender | Trojan.Agent.GQAF |
| Bkav | W32.Malware.F75F4D76 |
| CTX | exe.trojan.gqaf |
| ClamAV | Win.Malware.Gqaf-10058390-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.Siggen31.36139 |
| ESET-NOD32 | MSIL/Agent.VRB trojan |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.Agent.GQAF (B) |
| F-Secure | Trojan.TR/W32.Evo |
| Fortinet | W32/Agent.VRB!tr |
| GData | Trojan.Agent.GQAF |
| Detected | |
| Gridinsoft | Trojan.Win32.Agent.oa!s1 |
| Ikarus | Trojan.MSIL.Agent |
| K7AntiVirus | Trojan ( 0001140e1 ) |
| K7GW | Trojan ( 0001140e1 ) |
| Kingsoft | Win32.Troj.dcrat.v |
| Lionic | Trojan.Win32.DCRat.4!c |
| Malwarebytes | Spyware.Passwordstealer |
| MaxSecure | Trojan.Malware.666237285.susgen |
| McAfeeD | Real Protect-LS!E62E9A5AD265 |
| MicroWorld-eScan | Trojan.Agent.GQAF |
| Microsoft | Trojan:Win32/DCRat.MX!MTB |
| Paloalto | generic.ml |
| Rising | Trojan.Agent!8.B1E (CLOUD) |
| SUPERAntiSpyware | Trojan.Agent/Gen-Stealer |
| Sangfor | Suspicious.Win32.Save.pkr |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Injector.tc |
| Sophos | Troj/DCRat-AC |
| Tencent | Trojan.Msil.Agent.16002036 |
| TrellixENS | GenericRXWS-RE!E62E9A5AD265 |
| TrendMicro-HouseCall | Trojan.Win32.VSX.PE04CA3 |
| VBA32 | Trojan.Agent |
| VIPRE | Trojan.Agent.GQAF |
| Varist | W32/Trojan.LOUW-4466 |
| VirIT | Trojan.Win32.GenusC.IME |
| Webroot | Win.Malware.Gen |
| ZoneAlarm | Troj/DCRat-AC |
| alibabacloud | Trojan:MSIL/DCRat.MD8PHU |
| huorong | Backdoor/DcRAT.e |
| tehtris | Generic.Malware |