2026-03-13_08121d921175cd36ca8bed29ff34bd53_amadey_elex_play
Classification: Malicious
2026-03-13_08121d921175cd36ca8bed29ff34bd53_amadey_elex_play is a malicious file sample. Linked to Play activity. Detected by 34 antivirus engines.
Detection summary
- 34 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: PLAY (G1040)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Play | Triage | 2026-03-13 03:09:07 | 2026-03-13 03:09:07 | malicious-activity | G1040 Play |
Tags
play discovery ransomware spyware stealerSample information
- Filenames
- 2026-03-13_08121d921175cd36ca8bed29ff34bd53_amadey_elex_play
- MD5
08121d921175cd36ca8bed29ff34bd53- SHA-1
2627c393d3760bdc0d0ca5ce5aec48b1c3ae8422- SHA-256
60438602b187e71dfd60f167424fb979eca8c832645a76166464a05092ec871d- SHA-512
961009f4fd3a74591f3382e35fd540f88fe4d6f7c04e4de6221132b13156e314005f131c96b94abd24368b719b38f28768e3a75be4989616c970f78e84a8c998- First indexed
- 2026-03-13 03:09:07
- Last updated
- 2026-03-13 03:09:07
Antivirus detections
| Engine | Detection |
|---|---|
| APEX | Malicious |
| AhnLab-V3 | Trojan/Win.Generic.C5217612 |
| Alibaba | Ransom:Win32/MalwareX.ec574a44 |
| Antiy-AVL | Trojan[Ransom]/Win32.PLAY |
| Avira | TR/Crypt.XPACK.Gen8 |
| Bkav | W32.AIDetectMalware |
| ClamAV | Win.Ransomware.Fragtor-9964473-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 99) |
| DeepInstinct | MALICIOUS |
| Detected | |
| Gridinsoft | Ransom.Win32.Agent.sa |
| Ikarus | Trojan-Ransom.Play |
| K7AntiVirus | Ransomware ( 005ce6d61 ) |
| K7GW | Ransomware ( 005ce6d61 ) |
| Kingsoft | Win32.Trojan-Ransom.Agent.gen |
| Lionic | Trojan.Win32.Play.j!c |
| Malwarebytes | Ransom.Play |
| MaxSecure | Trojan.Malware.584259415.susgen |
| McAfeeD | ti!60438602B187 |
| MicroWorld-eScan | Gen:Variant.Trojan.Ransomware.1133 |
| Microsoft | Ransom:Win32/Play.E |
| NANO-Antivirus | Trojan.Win32.FileCoder.jrlveh |
| Paloalto | generic.ml |
| Sophos | Mal/PlayCrypt-A |
| TACHYON | Ransom/W32.Play.182784.C |
| Tencent | Malware.Win32.Gencirc.10bdbd66 |
| TrendMicro | Ransom.Win32.PLAYDE.SMYXCHJT |
| TrendMicro-HouseCall | Ransom.Win32.PLAYDE.SMYXCHJT |
| ViRobot | Trojan.Win.Z.Play.182784.BF |
| Webroot | W32.Ransomware.Gen |
| alibabacloud | Ransomware:Win/LockFile.GEA |
| huorong | Ransom/LockFile.gu |