7d6bfc385f9082e2e1136dfc049e683e50f302dedac19aabb80132546f88cc32
Classification: Malicious
7d6bfc385f9082e2e1136dfc049e683e50f302dedac19aabb80132546f88cc32 is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-02.
Detection summary
- 59 antivirus detections
- 1 IDS alerts
- 0 processes observed
- 1 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2026-09-02 11:45:07 |
2026-09-02 11:45:07 |
malicious-activity
|
|
| Meterpreter |
ThreatFox Abuse.ch |
2024-06-16 17:05:40 |
2024-06-18 16:22:32 |
|
|
| Meterpreter |
MalwareBazaar Abuse.ch |
2024-06-16 09:10:06 |
2024-06-16 09:10:06 |
malicious-activity
|
|
Sample information
- Filenames
- 7d6bfc385f9082e2e1136dfc049e683e50f302dedac19aabb80132546f88cc32, 4ebae29c823632e399d9842aa4b61510.exe
- File type
- application/x-dosexec
- MD5
4ebae29c823632e399d9842aa4b61510
- SHA-1
952b96377def813fb7e12e9581578388f287c438
- SHA-256
7d6bfc385f9082e2e1136dfc049e683e50f302dedac19aabb80132546f88cc32
- First indexed
- 2024-06-16 10:23:16
- Last updated
- 2026-09-02 11:45:08
Antivirus detections
| Engine | Detection |
| ALYac | Trojan.Metasploit.A |
| APEX | Malicious |
| AVG | Win32:MsfShell-V [Hack] |
| Acronis | suspicious |
| AhnLab-V3 | Trojan/Win64.RL_Shelma.R272960 |
| Antiy-AVL | GrayWare/Win32.Rozena.j |
| Arcabit | Trojan.Metasploit.A |
| Avast | Win32:MsfShell-V [Hack] |
| Avira | TR/Crypt.XPACK.Gen7 |
| BitDefender | Trojan.Metasploit.A |
| Bkav | W64.AIDetectMalware |
| CAT-QuickHeal | HackTool.Metasploit.S9212471 |
| ClamAV | Win.Malware.Metasploit-10022275-0 |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cybereason | malicious.c82363 |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | BackDoor.Shell.244 |
| ESET-NOD32 | a variant of Win64/Rozena.M |
| Elastic | Windows.Trojan.Metasploit |
| Emsisoft | Trojan.Metasploit.A (B) |
| F-Secure | Trojan.TR/Crypt.XPACK.Gen7 |
| FireEye | Generic.mg.4ebae29c823632e3 |
| Fortinet | W64/Rozena.J!tr |
| GData | Trojan.Metasploit.A |
| Google | Detected |
| Gridinsoft | Trojan.Win64.ShellCode.sd!s1 |
| Ikarus | Trojan.Win64.Meterpreter |
| Jiangmin | Trojan.Generic.auyjj |
| K7AntiVirus | Trojan ( 004fae881 ) |
| K7GW | Trojan ( 004fae881 ) |
| Kaspersky | HEUR:Trojan.Win64.Packed.gen |
| Lionic | Virus.Generic.AI.1!c |
| MAX | malware (ai score=82) |
| Malwarebytes | Trojan.MalPack |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfee | Trojan-FJIN!4EBAE29C8236 |
| McAfeeD | Real Protect-LS!4EBAE29C8236 |
| MicroWorld-eScan | Trojan.Metasploit.A |
| Microsoft | Trojan:Win64/Meterpreter!pz |
| Rising | Trojan.Kryptik/x64!1.A2F4 (CLASSIC) |
| SUPERAntiSpyware | Trojan.Agent/Gen-MalPack |
| Sangfor | HackTool.Win32.Reverse64_Bin_v2_5_through_v4_x.uwccg |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win64.Infected.zz |
| Sophos | ATK/Meter-A |
| Symantec | Trojan Horse |
| Tencent | Hacktool.Win64.Rozena.a |
| Trapmine | malicious.high.ml.score |
| TrendMicro | TROJ64_SWRORT.SM1 |
| TrendMicro-HouseCall | TROJ64_SWRORT.SM1 |
| VIPRE | Trojan.Metasploit.A |
| Varist | W64/Rozena.IG |
| VirIT | Trojan.Win32.Generic.BZPS |
| Yandex | Trojan.GenAsa!RZuPNlUDbQk |
| ZoneAlarm | HEUR:Trojan.Win64.Packed.gen |
| Zoner | Probably Heur.ExeHeaderL |
| alibabacloud | Backdoor:Win/shellcode.api(dyn) |