7d740bcc6e1ebdf1ec1a25242db7ab2aabbfa568394f0775287e28f69d526877

Classification: Malicious

7d740bcc6e1ebdf1ec1a25242db7ab2aabbfa568394f0775287e28f69d526877 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.

Detection summary

  • 43 antivirus detections
  • 1 IDS alerts
  • 5 processes observed
  • 2 contacted hosts
  • 1 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-06-03 09:28:48 2026-09-02 11:45:06 malicious-activity

Tags

evasive infostealer

Sample information

Filenames
7d740bcc6e1ebdf1ec1a25242db7ab2aabbfa568394f0775287e28f69d526877, file
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
417280 bytes
MD5
8f36720e87f9d5f3515afbe099b0e457
SHA-1
e404cf4fb5ad9d9bff8bd5c8d343a60df27161d8
SHA-256
7d740bcc6e1ebdf1ec1a25242db7ab2aabbfa568394f0775287e28f69d526877
First indexed
2024-06-03 09:18:06
Last updated
2026-09-02 11:45:07

Antivirus detections

EngineDetection
ALYacGen:Variant.Zusy.548714
APEXMalicious
AVGWin32:PWSX-gen [Trj]
AhnLab-V3Trojan/Win.Generic.C5629105
ArcabitTrojan.Zusy.D85F6A
AvastWin32:PWSX-gen [Trj]
BitDefenderGen:Variant.Zusy.548714
BitDefenderThetaGen:NN.ZexaF.36806.zuW@aKuRXgo
BkavW32.AIDetectMalware
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
ESET-NOD32a variant of Win32/Kryptik.HXDB
Elasticmalicious (high confidence)
EmsisoftGen:Variant.Zusy.548714 (B)
FireEyeGeneric.mg.8f36720e87f9d5f3
FortinetW32/Kryptik.HXDB!tr
GDataGen:Variant.Zusy.548714
GoogleDetected
IkarusTrojan.Win32.Krypt
KasperskyHEUR:Trojan-PSW.Win32.Lumma.gen
Kingsoftmalware.kb.a.977
LionicVirus.Generic.AI.1!c
MAXmalware (ai score=85)
MalwarebytesMalware.AI.4210003203
MaxSecureTrojan.Malware.300983.susgen
McAfeeDReal Protect-LS!8F36720E87F9
MicroWorld-eScanGen:Variant.Zusy.548714
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
Paloaltogeneric.ml
RisingBackdoor.Convagent!8.123DC (TFE:1:pUo2DbC9GnG)
SangforTrojan.Win32.Save.a
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.gc
SophosML/PE-A
SymantecML.Attribute.HighConfidence
Trapminemalicious.high.ml.score
TrendMicroMal_Locky-1
TrendMicro-HouseCallMal_Locky-1
VBA32BScope.TrojanPSW.RedLine
VIPREGen:Variant.Zusy.548714
ZoneAlarmHEUR:Trojan-PSW.Win32.Lumma.gen

Network contacts

149.154.167.99 49.13.158.245

DNS requests

t.me

Process list

NameCommand line
file.exe
file.exe
RegAsm.exe
cmd.exe/c timeout /t 10 & del /f /q "%WINDIR%\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe" & rd /s /q "%ALLUSERSPROFILE%\HDBKFHIJKJKE" & exit
timeout.exetimeout /t 10