frpc.exe

Classification: Malicious

frpc.exe is a malicious file sample. Linked to Frp malware. Reported by 3 threat sources, last seen 2026-08-26. Detected by 45 antivirus engines.

Detection summary

  • 45 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: FRP (S1144)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Cyber Threat Alliance 2026-08-26 10:10:11 2026-08-26 10:10:11 malicious-activity
FireCrypt ThreatFox Abuse.ch 2026-06-11 23:20:57 2026-06-11 23:25:04
FRP MalwareBazaar Abuse.ch 2026-06-11 19:44:15 2026-06-11 19:44:15 malicious-activity S1144 FRP

Tags

win.firecrypt

Sample information

Filenames
frpc.exe
MD5
e06aacd6139288d5bea4a676ee0c2404
SHA-1
8314be1136b9d1fc76350f1c7ef4cf8fe52a4acb
SHA-256
68a34fd6765d3a6d791e83c29e783fbe585579e08ea1ad569962e6644a3197a3
First indexed
2026-06-11 19:44:15
Last updated
2026-06-11 23:25:04

Antivirus detections

EngineDetection
ALYacTrojan.Generic.37585607
AVGWin64:MalwareX-gen [Misc]
AlibabaTrojan:Win32/Frp.40b0
ArcabitTrojan.Generic.D23D82C7
AvastWin64:MalwareX-gen [Misc]
BitDefenderTrojan.Generic.37585607
BkavW32.Common.60345700
CAT-QuickHealTrojan.Ghanarava.17569660770c2404
CTXexe.trojan.generic
CrowdStrikewin/grayware_confidence_100% (W)
CylanceUnsafe
DeepInstinctMALICIOUS
ESET-NOD32a variant of WinGo/Riskware.Frp.AA
Elasticmalicious (high confidence)
EmsisoftTrojan.Generic.37585607 (B)
FortinetRiskware/Frp
GDataTrojan.Generic.37585607
GoogleDetected
IkarusPUA.WinGo.Frp
K7AntiVirusTrojan ( 005af3be1 )
K7GWTrojan ( 005af3be1 )
Kasperskynot-a-virus:HEUR:NetTool.Win64.FRP.gen
KingsoftWin32.Troj.Undef.a
LionicRiskware.Win32.FRP.1!c
MalwarebytesMalware.AI.1625462134
MaxSecureTrojan.Malware.8426628.susgen
McAfeeDti!68A34FD6765D
MicroWorld-eScanTrojan.Generic.37585607
MicrosoftPUA:Win32/FRProxy
Paloaltogeneric.ml
PandaPUP/Generic
RisingHacktool.Frp!8.1336B (CLOUD)
SangforHackTool.Win64.Frp.uwccg
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win64.PUP.vh
SophosFast Reverse Proxy (PUA)
SymantecPUA.Gen.2
TrellixENSArtemis!E06AACD61392
TrendMicroTROJ_GEN.R002C0XCF25
TrendMicro-HouseCallTROJ_GEN.R002C0XCF25
VIPRETrojan.Generic.37585607
VaristW64/ABApplication.TVYP-1228
XcitiumMalware@#2wm7z26at1c7o
ZillyaTool.FRP.Win64.3
alibabacloudProxytool:Golang/Frpc.gen