6bd3d05aef89cd03d6b49b20716775fe92f0cf8a3c2747094404ef98f96e9376

Classification: Malicious

6bd3d05aef89cd03d6b49b20716775fe92f0cf8a3c2747094404ef98f96e9376 is a malicious file sample. Linked to Wirte activity. Detected by 46 antivirus engines.

Detection summary

  • 46 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Intrusion sets: WIRTE (G0090)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
WIRTE MalwarePatrol 2026-03-03 17:47:21 2026-03-03 18:01:41 malicious-activity G0090 WIRTE
Generic Malware Hybrid-Analysis 2026-01-15 12:47:56 2026-01-15 13:50:15

Tags

wirte ashen lepus

Sample information

Filenames
6bd3d05aef89cd03d6b49b20716775fe92f0cf8a3c2747094404ef98f96e9376
File type
PE32+ executable for MS Windows 6.00 (DLL), x86-64 ...
MD5
ae4b7ce4ae428829a0dd167bc821435c
SHA-1
a8ecc6d8cfd7e41294fffaece2cd38c43a18b743
SHA-256
6bd3d05aef89cd03d6b49b20716775fe92f0cf8a3c2747094404ef98f96e9376
First indexed
2026-01-15 12:24:48
Last updated
2026-07-13 01:41:13

Antivirus detections

EngineDetection
Antiy-AVLTrojan/Win32.Alevaul
AviraTR/Agent.xdtip
BkavW64.AIDetectMalware
CTXdll.trojan.papershell
CrowdStrikewin/malicious_confidence_100% (W)
DeepInstinctMALICIOUS
DrWebTrojan.Siggen32.14817
Elasticmalicious (moderate confidence)
F-SecureTrojan.TR/Agent.xdtip
FortinetW32/UNC_1549.A!tr.bdr
GoogleDetected
IkarusTrojan.Win32.PaperShell
KasperskyTrojan.Win64.Kryptik.nf
LionicTrojan.Win32.PaperShell.4!c
McAfeeDti!6BD3D05AEF89
MicrosoftTrojan:Win32/PaperShell!AMTB
Paloaltogeneric.ml
RisingTrojan.Kryptik/x64!1.139A5 (CLASSIC)
SkyhighGeneric Trojan.odh
SophosTroj/FakWtsDl-A
SymantecTrojan.Gen.MBT
TencentMalware.Win32.Gencirc.14a584d3
TrellixENSGeneric Trojan.odh
VaristW64/ABApplication.SOPN-6441
ViRobotTrojan.Win.S.PaperShell.165136
ZillyaTrojan.Kryptik.Win64.68715
ZoneAlarmTroj/FakWtsDl-A
alibabacloudTrojan:Win/PaperShell.Gen
ALYacTrojan.Agent.GQVR
AVGWin64:MalwareX-gen [Misc]
ArcabitTrojan.Agent.GQVR
AvastWin64:MalwareX-gen [Misc]
AviraTR/W64.Agent
BitDefenderTrojan.Agent.GQVR
BkavW32.Malware.DDF1315F
CylanceUnsafe
Elasticmalicious (high confidence)
EmsisoftTrojan.Agent.GQVR (B)
F-SecureTrojan.TR/W64.Agent
GDataTrojan.Agent.GQVR
MalwarebytesMalware.AI.3816219364
MicroWorld-eScanTrojan.Agent.GQVR
PandaTrj/GdSda.A
TrendMicroTROJ_GEN.R002C0TLJ25
TrendMicro-HouseCallTROJ_GEN.R002C0TLJ25
VIPRETrojan.Agent.GQVR