809a49e7d55ccdfb06509fd21a907f12be24c7d43ae6941d35c1a54ba58e549e

Classification: Malicious

809a49e7d55ccdfb06509fd21a907f12be24c7d43ae6941d35c1a54ba58e549e is a malicious file sample. Linked to Darkgate malware. Detected by 48 antivirus engines.

Detection summary

  • 48 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: DARKGATE (S1111)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2026-09-02 15:45:04 2026-09-02 15:45:04 malicious-activity
DarkGate ThreatFox Abuse.ch 2025-04-13 05:53:30 2025-04-15 05:37:07 S1111 DarkGate

Tags

win.darkgate meh mehcrypter windows-server-utility

Sample information

Filenames
809a49e7d55ccdfb06509fd21a907f12be24c7d43ae6941d35c1a54ba58e549e
File type
PE32+ executable for MS Windows 6.00 (GUI), x86-64 ...
MD5
2a38b751e44881286761a7eb61539726
SHA-1
8903948573b7520dcb5ee06c382cbf024e21c8a0
SHA-256
809a49e7d55ccdfb06509fd21a907f12be24c7d43ae6941d35c1a54ba58e549e
First indexed
2025-04-13 07:28:42
Last updated
2026-09-02 15:45:04

Antivirus detections

EngineDetection
ALYacQD:Trojan.GenericKDQ.404E2240A5
AVGWin32:MiscX-gen [PUP]
AlibabaTrojan:Win32/ChromeCookiesView.fec6686f
Antiy-AVLTrojan/Win32.Saguaro
ArcabitQD:Trojan.GenericQ.404E2240A5
AvastWin32:MiscX-gen [PUP]
AviraTR/Lethic.toijn
BitDefenderQD:Trojan.GenericKDQ.404E2240A5
BkavW32.Common.0B15DE28
CAT-QuickHealTrojan.Ghanarava.1741254951539726
CTXexe.trojan.chromecookiesview
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebWin32.HLLW.Autoruner1.14959
ESET-NOD32a variant of Win32/ChromeCookiesView.A potentially unsafe
Elasticmalicious (moderate confidence)
EmsisoftQD:Trojan.GenericKDQ.404E2240A5 (B)
F-SecureTrojan.TR/Lethic.toijn
FireEyeQD:Trojan.GenericKDQ.404E2240A5
FortinetRiskware/ChromeCookiesView
GDataQD:Trojan.GenericKDQ.404E2240A5
GoogleDetected
K7AntiVirusUnwanted-Program ( 005a56e31 )
K7GWUnwanted-Program ( 005a56e31 )
KasperskyTrojan.Win32.Saguaro.n
KingsoftWin32.PSWTool.PassView.a
LionicTrojan.Win32.GenericKDQ.4!c
MalwarebytesRiskWare.GameHack
MaxSecureTrojan.Malware.309146866.susgen
McAfeeArtemis!2A38B751E448
MicroWorld-eScanQD:Trojan.GenericKDQ.404E2240A5
MicrosoftTrojan:Win32/Malgent!MSR
Paloaltogeneric.ml
PandaTrj/Agent.DG
RisingPUA.ChromeCookiesView!8.17819 (CLOUD)
SkyhighArtemis
SophosMal/Generic-S
SymantecML.Attribute.HighConfidence
TencentMalware.Win32.Gencirc.142327c6
TrendMicroTROJ_GEN.R002C0DL324
TrendMicro-HouseCallTROJ_GEN.R002C0DL324
VBA32Trojan.Darkgate
VIPREQD:Trojan.GenericKDQ.404E2240A5
VaristW64/ABTrojan.JSKR-1013
VirITTrojan.Win64.Agent.GAC
XcitiumApplicUnwnt@#1xdftvzsa2ecz
ZillyaTrojan.Saguaro.Win32.25
alibabacloudBackdoor:Win/Rozena