80f14f5249c49d21ea607b34fa793d523e03acda8298b1ab1ae8a3d55428c6ce
Classification: Malicious
80f14f5249c49d21ea607b34fa793d523e03acda8298b1ab1ae8a3d55428c6ce is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02.
Detection summary
- 50 antivirus detections
- 0 IDS alerts
- 3 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2024-08-27 07:00:03 |
2026-09-02 16:45:06 |
malicious-activity
|
|
| Generic.Malware |
MalwareBazaar Abuse.ch |
2024-08-27 01:06:34 |
2024-08-27 01:06:34 |
malicious-activity
|
|
Sample information
- Filenames
- 80f14f5249c49d21ea607b34fa793d523e03acda8298b1ab1ae8a3d55428c6ce, Transaction_Ref_26082024_jpg.scr, NwFP.exe
- File type
- application/x-dosexec
- Size
- 480256 bytes
- MD5
793a58e683a54d24d3c6bae96df29d65
- SHA-1
09e7bdc6a52fa3290fa7e9ee0471c0d1e445a2ce
- SHA-256
80f14f5249c49d21ea607b34fa793d523e03acda8298b1ab1ae8a3d55428c6ce
- First indexed
- 2024-08-27 02:19:03
- Last updated
- 2026-09-02 16:45:07
Antivirus detections
| Engine | Detection |
| APEX | Malicious |
| AVG | Win32:MalwareX-gen [Trj] |
| AhnLab-V3 | Trojan/Win.MalwareX-gen.C5662516 |
| Antiy-AVL | Trojan[Spy]/MSIL.Stealer |
| Avast | Win32:MalwareX-gen [Trj] |
| Avira | TR/AD.SmokeLoader.plyco |
| BitDefender | Trojan.GenericKD.73930378 |
| Bkav | W32.AIDetectMalware.CS |
| CAT-QuickHeal | TrojanSpy.MSIL |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.PackedNET.2548 |
| ESET-NOD32 | a variant of MSIL/Kryptik.AMEX |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.GenericKD.73930378 (B) |
| F-Secure | Trojan.TR/AD.SmokeLoader.plyco |
| FireEye | Generic.mg.793a58e683a54d24 |
| Fortinet | MSIL/Remcos.GWMJE!tr |
| GData | Win32.Trojan-Downloader.SmokeLoader.TK4OYE |
| Google | Detected |
| Gridinsoft | Trojan.Win32.Kryptik.sa |
| Ikarus | Win32.Outbreak |
| K7AntiVirus | Trojan ( 005b9a3b1 ) |
| K7GW | Trojan ( 005b9a3b1 ) |
| Kaspersky | HEUR:Trojan-Spy.MSIL.Stealer.gen |
| Kingsoft | malware.kb.c.812 |
| Lionic | Trojan.Win32.Stealer.12!c |
| MAX | malware (ai score=86) |
| Malwarebytes | Malware.AI.3982445649 |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfee | Artemis!793A58E683A5 |
| McAfeeD | ti!80F14F5249C4 |
| MicroWorld-eScan | Trojan.GenericKD.73930378 |
| Microsoft | Trojan:MSIL/AgentTesla.SIK!MTB |
| Paloalto | generic.ml |
| Panda | Trj/Chgt.AD |
| Rising | Malware.Obfus/[email protected] (RDM.MSIL2:D/n3FrBR5o5KXN45iV0i7g) |
| Sangfor | Trojan.Win32.Save.MSIL_Inject |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Generic.gc |
| Sophos | Troj/Krypt-ABH |
| Symantec | Scr.Malcode!gdn34 |
| Trapmine | malicious.moderate.ml.score |
| TrendMicro | Trojan.Win32.SMOKELOADER.YXEHZZ |
| TrendMicro-HouseCall | Trojan.Win32.SMOKELOADER.YXEHZZ |
| Varist | W32/MSIL_Kryptik.LLX.gen!Eldorado |
| VirIT | Trojan.Win32.MSIL_Heur.A |
| ZoneAlarm | HEUR:Trojan-Spy.MSIL.Stealer.gen |
| huorong | HEUR:TrojanSpy/MSIL.AgentTesla.c |
Process list
| Name | Command line |
| Transaction_Ref_26082024_jpg.scr.exe | |
| Transaction_Ref_26082024_jpg.scr.exe | |
| Transaction_Ref_26082024_jpg.scr.exe | |