WSoRfkK.exe

Classification: Malicious

WSoRfkK.exe is a malicious file sample. Linked to Emotet malware. Reported by 1 threat source, last seen 2020-07-23. Detected by 72 antivirus engines.

Detection summary

  • 72 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: EMOTET (S0367)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Heodo Abuse.ch 2020-07-23 09:22:08 2020-07-23 09:22:08 S0367 Emotet

Sample information

Filenames
WSoRfkK.exe
File type
application/x-dosexec
MD5
6dcaef4389944d51a498b692b606bc37
SHA-1
521f0ccac8e907b40185ce99579414f95ede402d
SHA-256
69b044ad597baaf67c1853d6962d779bf8281278daf91c770be03e020436706f
First indexed
2020-07-23 10:15:12
Last updated
2026-09-03 00:42:52

Antivirus detections

EngineDetection
BkavW32.AIDetectVM.malware2
McAfeeGenericRXAA-AA!6DCAEF438994
CylanceUnsafe
K7AntiVirusRiskware ( 0040eff71 )
K7GWRiskware ( 0040eff71 )
F-ProtW32/Kryptik.BQX.gen!Eldorado
APEXMalicious
Endgamemalicious (high confidence)
DrWebTrojan.DownLoader34.3170
FortinetW32/GenericKDZ.6887!tr
ViRobotTrojan.Win32.Emotet.548864.C
AhnLab-V3Malware/Win32.Generic.C4167855
MicrosoftTrojan:Win32/Emotet.GKM!MTB
ESET-NOD32a variant of Win32/GenKryptik.EOTD
MalwarebytesTrojan.Emotet
IkarusTrojan-Banker.Emotet
ALYacTrojan.Agent.EUBS
AVGWin32:Trojan-gen
AlibabaTrojan:Win32/Emotet.d9f8f935
Antiy-AVLTrojan/Win32.SGeneric
ArcabitTrojan.Agent.EUBS
AvastWin32:Trojan-gen
AviraHEUR/AGEN.1345724
BitDefenderTrojan.Agent.EUBS
BkavW32.AIDetectMalware
CAT-QuickHealTrojan.Emotet.S15140201
CTXexe.trojan.emotet
ClamAVWin.Trojan.Generickdz-9636359-0
CrowdStrikewin/malicious_confidence_100% (W)
CynetMalicious (score: 99)
DeepInstinctMALICIOUS
ESET-NOD32Win32/Emotet.CD
Elasticmalicious (high confidence)
EmsisoftTrojan.Emotet (A)
F-SecureHeuristic.HEUR/AGEN.1345724
FireEyeGeneric.mg.6dcaef4389944d51
FortinetW32/GenKryptik.EPAZ!tr
GDataTrojan.Agent.EUBS
GoogleDetected
GridinsoftTrojan.Win32.Emotet.oa!s1
JiangminBackdoor.Emotet.nt
K7AntiVirusTrojan ( 0056c5421 )
K7GWTrojan ( 0056c5421 )
KasperskyHEUR:Backdoor.Win32.Emotet.vho
LionicVirus.Win32.Virut.mfMF
MalwarebytesGeneric.Malware.AI.DDS
McAfeeEmotet-FRI!6DCAEF438994
McAfeeDti!69B044AD597B
MicroWorld-eScanTrojan.Agent.EUBS
MicrosoftTrojan:Win32/Emotet.ARJ!MTB
NANO-AntivirusTrojan.Win32.Emotet.hoquhq
Paloaltogeneric.ml
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.C955 (CLASSIC)
SUPERAntiSpywareTrojan.Agent/Gen-Emotet
SangforVirus.Win32.Save.a
SentinelOneStatic AI - Suspicious PE
SkyhighEmotet-FRI!6DCAEF438994
SophosTroj/Emotet-CKF
SymantecTrojan.Emotet
TencentBackdoor.Win32.Agent.ht
Trapminemalicious.moderate.ml.score
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9V
VBA32BScope.Trojan.Zenpak
VIPRETrojan.Agent.EUBS
VaristW32/Emotet.AOB.gen!Eldorado
VirITTrojan.Win32.Emotet.CII
XcitiumMalware@#3b2rjehq27l5u
ZillyaTrojan.Emotet.Win32.22491
ZoneAlarmTroj/Emotet-CKF
alibabacloudTrojan[stealer]:Win/Emotet.CD
huorongTrojan/Emotet.ff