frpc.exe
Classification: Malicious
frpc.exe is a malicious file sample. Linked to Frp malware. Reported by 3 threat sources, last seen 2026-08-26. Detected by 45 antivirus engines.
Detection summary
- 45 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: FRP (S1144)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Cyber Threat Alliance | 2026-08-26 10:10:11 | 2026-08-26 10:10:11 | malicious-activity | |
| FireCrypt | ThreatFox Abuse.ch | 2026-06-11 23:20:57 | 2026-06-11 23:25:04 | ||
| FRP | MalwareBazaar Abuse.ch | 2026-06-11 19:44:15 | 2026-06-11 19:44:15 | malicious-activity | S1144 FRP |
Tags
win.firecryptSample information
- Filenames
- frpc.exe
- MD5
e06aacd6139288d5bea4a676ee0c2404- SHA-1
8314be1136b9d1fc76350f1c7ef4cf8fe52a4acb- SHA-256
68a34fd6765d3a6d791e83c29e783fbe585579e08ea1ad569962e6644a3197a3- First indexed
- 2026-06-11 19:44:15
- Last updated
- 2026-06-11 23:25:04
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Trojan.Generic.37585607 |
| AVG | Win64:MalwareX-gen [Misc] |
| Alibaba | Trojan:Win32/Frp.40b0 |
| Arcabit | Trojan.Generic.D23D82C7 |
| Avast | Win64:MalwareX-gen [Misc] |
| BitDefender | Trojan.Generic.37585607 |
| Bkav | W32.Common.60345700 |
| CAT-QuickHeal | Trojan.Ghanarava.17569660770c2404 |
| CTX | exe.trojan.generic |
| CrowdStrike | win/grayware_confidence_100% (W) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| ESET-NOD32 | a variant of WinGo/Riskware.Frp.AA |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.Generic.37585607 (B) |
| Fortinet | Riskware/Frp |
| GData | Trojan.Generic.37585607 |
| Detected | |
| Ikarus | PUA.WinGo.Frp |
| K7AntiVirus | Trojan ( 005af3be1 ) |
| K7GW | Trojan ( 005af3be1 ) |
| Kaspersky | not-a-virus:HEUR:NetTool.Win64.FRP.gen |
| Kingsoft | Win32.Troj.Undef.a |
| Lionic | Riskware.Win32.FRP.1!c |
| Malwarebytes | Malware.AI.1625462134 |
| MaxSecure | Trojan.Malware.8426628.susgen |
| McAfeeD | ti!68A34FD6765D |
| MicroWorld-eScan | Trojan.Generic.37585607 |
| Microsoft | PUA:Win32/FRProxy |
| Paloalto | generic.ml |
| Panda | PUP/Generic |
| Rising | Hacktool.Frp!8.1336B (CLOUD) |
| Sangfor | HackTool.Win64.Frp.uwccg |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win64.PUP.vh |
| Sophos | Fast Reverse Proxy (PUA) |
| Symantec | PUA.Gen.2 |
| TrellixENS | Artemis!E06AACD61392 |
| TrendMicro | TROJ_GEN.R002C0XCF25 |
| TrendMicro-HouseCall | TROJ_GEN.R002C0XCF25 |
| VIPRE | Trojan.Generic.37585607 |
| Varist | W64/ABApplication.TVYP-1228 |
| Xcitium | Malware@#2wm7z26at1c7o |
| Zillya | Tool.FRP.Win64.3 |
| alibabacloud | Proxytool:Golang/Frpc.gen |