561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe

Classification: Malicious

561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe is a malicious file sample. Linked to Bandook malware.

Detection summary

  • 0 antivirus detections
  • 0 IDS alerts
  • 4 processes observed
  • 1 contacted hosts
  • 1 DNS requests

MITRE ATT&CK associations

Malware families: BANDOOK (S0234)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Cyber Threat Alliance 2026-08-10 10:01:55 2026-08-10 10:01:55 malicious-activity
Generic Malware Hybrid-Analysis 2025-08-06 16:30:03 2025-08-06 17:45:09
Bandook Abuse.ch 2021-07-02 06:02:00 2021-07-02 06:02:00 malicious-activity S0234 Bandook

Tags

banker emotet infostealer qakbot suspicious

Sample information

Filenames
561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe, COTIZACION 21.exe
File type
application/x-dosexec
Size
1391616 bytes
MD5
e65b1008653984079b9fd5ff4bae89a0
SHA-1
85b964fe88f0546aa56396c588fb85aa2760d56c
SHA-256
561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a
First indexed
2021-07-02 08:15:16
Last updated
2026-05-20 10:47:40

Network contacts

34.209.195.255

DNS requests

r3.panjo.club

Process list

NameCommand line
561cb93118fef1966a3233ae7ffd31017823dd5aaad5dc1b2542e717055c197a.exe
iexplore.exe
iexplore.exe
iexplore.exe