561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe
Classification: Malicious
561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe is a malicious file sample. Linked to Bandook malware.
Detection summary
- 0 antivirus detections
- 0 IDS alerts
- 4 processes observed
- 1 contacted hosts
- 1 DNS requests
MITRE ATT&CK associations
Malware families: BANDOOK (S0234)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Cyber Threat Alliance | 2026-08-10 10:01:55 | 2026-08-10 10:01:55 | malicious-activity | |
| Generic Malware | Hybrid-Analysis | 2025-08-06 16:30:03 | 2025-08-06 17:45:09 | ||
| Bandook | Abuse.ch | 2021-07-02 06:02:00 | 2021-07-02 06:02:00 | malicious-activity | S0234 Bandook |
Tags
banker emotet infostealer qakbot suspiciousSample information
- Filenames
- 561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe, COTIZACION 21.exe
- File type
- application/x-dosexec
- Size
- 1391616 bytes
- MD5
e65b1008653984079b9fd5ff4bae89a0- SHA-1
85b964fe88f0546aa56396c588fb85aa2760d56c- SHA-256
561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a- First indexed
- 2021-07-02 08:15:16
- Last updated
- 2026-05-20 10:47:40
Network contacts
DNS requests
Process list
| Name | Command line |
|---|---|
| 561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe | |
| iexplore.exe | |
| iexplore.exe | |
| iexplore.exe | |