7fd5e3fde1742b5d5c95b0a712d7b6e49bf4a77507f69bfada8c7e56c84a1ca8
Classification: Malicious
7fd5e3fde1742b5d5c95b0a712d7b6e49bf4a77507f69bfada8c7e56c84a1ca8 is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-02.
Detection summary
- 44 antivirus detections (61% detection ratio)
- 1 IDS alerts
- 6 processes observed
- 4 contacted hosts
- 3 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2023-11-26 05:30:03 |
2026-09-02 14:45:04 |
malicious-activity
|
|
| Downloader |
VM-Ray |
2023-11-26 07:23:36 |
2023-11-26 09:24:08 |
|
|
| Generic.Malware |
MalwareBazaar Abuse.ch |
2023-11-26 05:16:42 |
2023-11-26 05:16:42 |
malicious-activity
|
|
Sample information
- Filenames
- 7fd5e3fde1742b5d5c95b0a712d7b6e49bf4a77507f69bfada8c7e56c84a1ca8, SecuriteInfo.com.Trojan.MulDrop24.22194.27442.3190.exe, SecuriteInfo.com.Trojan.MulDrop24.22194.27442.3190
- File type
- PE32 executable (GUI) Intel 80386, for MS Windows
- Size
- 1539809 bytes
- MD5
fbcc9a39073668929306c4081a8476e0
- SHA-1
e19394ed3690b23f21eb073bc545993d69a60403
- SHA-256
7fd5e3fde1742b5d5c95b0a712d7b6e49bf4a77507f69bfada8c7e56c84a1ca8
- First indexed
- 2023-11-26 05:17:04
- Last updated
- 2026-09-02 14:45:04
Antivirus detections
| Engine | Detection |
| Bkav | W32.AIDetectMalware |
| Lionic | Trojan.Win32.Tasker.tsue |
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | Gen:Heur.Mint.Zard.45 |
| Skyhigh | BehavesLike.Win32.Dropper.th |
| McAfee | Artemis!FBCC9A390736 |
| Malwarebytes | RiskWare.Agent |
| VIPRE | Gen:Heur.Mint.Zard.45 |
| Sangfor | Trojan.Win32.Agent.Vwol |
| CrowdStrike | win/malicious_confidence_70% (W) |
| Arcabit | Trojan.Mint.Zard.45 |
| Symantec | ML.Attribute.HighConfidence |
| ESET-NOD32 | a variant of Win32/Agent.ADVG |
| Cynet | Malicious (score: 100) |
| APEX | Malicious |
| ClamAV | Win.Malware.Zard-10015589-0 |
| Kaspersky | UDS:Trojan-PSW.Win32.RisePro.gen |
| BitDefender | Gen:Heur.Mint.Zard.45 |
| Avast | TrojanX-gen [Trj] |
| Emsisoft | Gen:Heur.Mint.Zard.45 (B) |
| F-Secure | Trojan.TR/Agent.azfwy |
| DrWeb | Trojan.MulDrop24.22194 |
| Trapmine | suspicious.low.ml.score |
| FireEye | Generic.mg.fbcc9a3907366892 |
| Webroot | W32.Trojan.Gen |
| Varist | W32/Sdum.Z.gen!Eldorado |
| Avira | TR/Agent.azfwy |
| Kingsoft | malware.kb.a.878 |
| Microsoft | Trojan:Win32/RiseProStealer.PA!MTB |
| ZoneAlarm | HEUR:Trojan-PSW.Win32.RisePro.gen |
| GData | Gen:Heur.Mint.Zard.45 |
| AhnLab-V3 | Trojan/Win.Generic.R624285 |
| BitDefenderTheta | Gen:NN.ZexaF.36792.Dv1@a4aq2Fpk |
| ALYac | Gen:Heur.Mint.Zard.45 |
| MAX | malware (ai score=87) |
| VBA32 | BScope.TrojanPSW.RisePro |
| Cylance | unsafe |
| Panda | Trj/GdSda.A |
| Rising | Downloader.Agent!1.D93C (CLASSIC) |
| MaxSecure | Trojan.Malware.121218.susgen |
| Fortinet | W32/Agent.ADVG!tr |
| AVG | TrojanX-gen [Trj] |
| Cybereason | malicious.d3690b |
| DeepInstinct | MALICIOUS |
Process list
| Name | Command line |
| SecuriteInfo.com.Trojan.MulDrop24.22194.27442.3190.exe | |
| schtasks.exe | schtasks /create /f /RU "%OSUSER%" /tr "%ALLUSERSPROFILE%\OfficeTrackerNMP131\OfficeTrackerNMP131.exe" /tn "OfficeTrackerNMP131 HR" /sc HOURLY /rl HIGHEST |
| schtasks.exe | schtasks /create /f /RU "%OSUSER%" /tr "%ALLUSERSPROFILE%\OfficeTrackerNMP131\OfficeTrackerNMP131.exe" /tn "OfficeTrackerNMP131 LG" /sc ONLOGON /rl HIGHEST |
| OfficeTrackerNMP131.exe | |
| FANBooster131.exe | |
| MaxLoonaFest131.exe | |