7fd5f00b5df0b7c9934127d7de55af5d3aa60431d83d4d41d52a55b063a46afd

Classification: Malicious

7fd5f00b5df0b7c9934127d7de55af5d3aa60431d83d4d41d52a55b063a46afd is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-02.

Detection summary

  • 24 antivirus detections
  • 4 IDS alerts
  • 5 processes observed
  • 3 contacted hosts
  • 10 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-10-06 00:45:04 2026-09-02 14:45:04 malicious-activity
Lumma Stealer ThreatFox Abuse.ch 2025-04-02 16:34:09 2025-04-04 17:31:38
Generic.Malware MalwareBazaar Abuse.ch 2024-10-06 00:26:40 2024-10-06 00:26:40 malicious-activity

Tags

evasive win.lumma lummac2 stealer malicious

Sample information

Filenames
7fd5f00b5df0b7c9934127d7de55af5d3aa60431d83d4d41d52a55b063a46afd, file
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
1887232 bytes
MD5
6fd35e5235be7f946c4163d3e688a216
SHA-1
5f735ba084483895f6f9724620cb148b4da895ad
SHA-256
7fd5f00b5df0b7c9934127d7de55af5d3aa60431d83d4d41d52a55b063a46afd
First indexed
2024-10-06 00:28:18
Last updated
2026-09-02 14:45:04

Antivirus detections

EngineDetection
APEXMalicious
AviraTR/Crypt.ZPACK.Gen
BkavW32.AIDetectMalware
CrowdStrikewin/malicious_confidence_100% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
ESET-NOD32a variant of Win32/Packed.Themida.HZB
Elasticmalicious (high confidence)
F-SecureTrojan.TR/Crypt.ZPACK.Gen
FireEyeGeneric.mg.6fd35e5235be7f94
GridinsoftTrojan.Heur!.03A120A1
KasperskyHEUR:Trojan.Win32.Generic
Kingsoftmalware.kb.b.996
MalwarebytesTrojan.Amadey
McAfeeDReal Protect-LS!6FD35E5235BE
MicrosoftTrojan:Win32/Wacatac.B!ml
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.tc
SophosGeneric ML PUA (PUA)
SymantecML.Attribute.HighConfidence
Trapminemalicious.high.ml.score
ZoneAlarmHEUR:Trojan.Win32.Generic
ZonerProbably Heur.ExeHeaderL

Network contacts

3.250.92.156 72.247.96.236 23.57.138.107

DNS requests

bathdoomgaz.store clearancek.site dissapoiznw.store eaglepawnoy.store licendfilteo.site mobbipenju.store spirittunek.store steamcommunity.com studennotediw.store feelystroll.buzz

Process list

NameCommand line
file.exe
WerFault.exe-u -p 7012 -s 748
WerFault.exe-u -p 7012 -s 748
WerFault.exe-pss -s 452 -p 7012 -ip 7012
file.exe