7facbc0f3f99b780c838a040234fc2e1315bd3d3acadc0ee0226eb890e891605
Classification: Malicious
7facbc0f3f99b780c838a040234fc2e1315bd3d3acadc0ee0226eb890e891605 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.
Detection summary
- 51 antivirus detections (71% detection ratio)
- 1 IDS alerts
- 4 processes observed
- 1 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2023-10-09 20:15:03 |
2026-09-02 14:45:06 |
malicious-activity
|
|
Sample information
- Filenames
- 7facbc0f3f99b780c838a040234fc2e1315bd3d3acadc0ee0226eb890e891605, 7facb.Backdoor.exe
- File type
- PE32 executable (console) Intel 80386, for MS Windows
- Size
- 468936 bytes
- MD5
222dd02a579cda5778599cc9dbdc1202
- SHA-1
05d759fd6773d1c4552e2a7bf6b63fd95892aed0
- SHA-256
7facbc0f3f99b780c838a040234fc2e1315bd3d3acadc0ee0226eb890e891605
- First indexed
- 2023-10-09 20:06:30
- Last updated
- 2026-09-02 14:45:06
Antivirus detections
| Engine | Detection |
| Bkav | W32.AIDetectMalware |
| Lionic | Trojan.Win32.Mokes.4!c |
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | Trojan.GenericKD.69652312 |
| FireEye | Generic.mg.222dd02a579cda57 |
| Skyhigh | Artemis!Trojan |
| McAfee | Artemis!222DD02A579C |
| Sangfor | Backdoor.Win32.Kryptik.Vsky |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Alibaba | Backdoor:Win32/Mokes.398f6f8d |
| K7GW | Trojan ( 005abaf11 ) |
| K7AntiVirus | Trojan ( 005abaf11 ) |
| VirIT | Trojan.Win32.GenusT.DSPR |
| Symantec | Trojan Horse |
| ESET-NOD32 | a variant of Win32/GenKryptik.GOPZ |
| APEX | Malicious |
| ClamAV | Win.Trojan.Fugrafa-10010052-0 |
| Kaspersky | HEUR:Backdoor.Win32.Mokes.gen |
| BitDefender | Trojan.GenericKD.69652312 |
| NANO-Antivirus | Trojan.Win32.Mokes.kbxwmz |
| Avast | Win32:Evo-gen [Trj] |
| Tencent | Win32.Trojan.FalseSign.Cujl |
| Emsisoft | Trojan.GenericKD.69652312 (B) |
| F-Secure | Trojan.TR/AD.Nekark.mdrct |
| DrWeb | Trojan.Inject4.62011 |
| VIPRE | Trojan.GenericKD.69652312 |
| TrendMicro | TrojanSpy.Win32.TRICKBOT.SMC |
| Sophos | Mal/Generic-S |
| GData | Win32.Trojan.PSE.BTXSLY |
| Jiangmin | TrojanSpy.Stealer.ahyl |
| Google | Detected |
| Avira | TR/AD.Nekark.mdrct |
| Varist | W32/Stealer.FB.gen!Eldorado |
| Antiy-AVL | Trojan[Spy]/Win32.Stealer |
| Gridinsoft | Malware.Win32.RedLine.bot |
| Arcabit | Trojan.Generic.D426CF58 |
| ZoneAlarm | HEUR:Backdoor.Win32.Mokes.gen |
| Microsoft | Trojan:Win32/MysticStealer.ASAX!MTB |
| Cynet | Malicious (score: 100) |
| AhnLab-V3 | Trojan/Win.TrickBot.R610193 |
| MAX | malware (ai score=82) |
| Cylance | unsafe |
| Panda | Trj/Genetic.gen |
| Zoner | Trojan.Win32.162634 |
| TrendMicro-HouseCall | TrojanSpy.Win32.TRICKBOT.SMC |
| Rising | Trojan.SmokeLoader!1.EB4F (CLASSIC) |
| Ikarus | Trojan.Win32.Krypt |
| MaxSecure | Trojan.Malware.300983.susgen |
| Fortinet | W32/Kryptik.HUTD!tr |
| AVG | Win32:Evo-gen [Trj] |
| DeepInstinct | MALICIOUS |
Process list
| Name | Command line |
| 7facb.Backdoor.exe | |
| AppLaunch.exe | |
| WerFault.exe | -u -p 816 -s 144 |
| WerFault.exe | -pss -s 460 -p 816 -ip 816 |