819c6b1f9706d8644dfd1d081ac34a501c7af55ada4f43815af40cdcccc577e8
Classification: Malicious
819c6b1f9706d8644dfd1d081ac34a501c7af55ada4f43815af40cdcccc577e8 is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-02.
Detection summary
- 44 antivirus detections
- 2 IDS alerts
- 4 processes observed
- 1 contacted hosts
- 8 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2024-10-16 01:15:09 |
2026-09-02 17:45:06 |
malicious-activity
|
|
| Lumma Stealer |
ThreatFox Abuse.ch |
2025-04-02 16:34:17 |
2025-04-04 17:30:42 |
|
|
| Generic.Malware |
MalwareBazaar Abuse.ch |
2024-10-13 01:32:40 |
2024-10-13 01:32:40 |
malicious-activity
|
|
Tags
evasive
win.lumma
lummac2 stealer
malicious
Sample information
- Filenames
- 819c6b1f9706d8644dfd1d081ac34a501c7af55ada4f43815af40cdcccc577e8, 819c6. Trojan.exe, file
- File type
- application/x-dosexec
- Size
- 1910272 bytes
- MD5
3d0bd95b0f36182c6a2087f96369bedf
- SHA-1
0ba2f80e6cf9895f13bcd473deb7bf785aba2c9e
- SHA-256
819c6b1f9706d8644dfd1d081ac34a501c7af55ada4f43815af40cdcccc577e8
- First indexed
- 2024-10-13 03:18:53
- Last updated
- 2026-09-02 17:45:07
Antivirus detections
| Engine | Detection |
| ALYac | Trojan.GenericKDZ.108241 |
| APEX | Malicious |
| AVG | Win32:Evo-gen [Trj] |
| AhnLab-V3 | Trojan/Win.Generic.C5678949 |
| Arcabit | Trojan.Generic.D1A6D1 |
| Avast | Win32:Evo-gen [Trj] |
| Avira | TR/Crypt.ZPACK.Gen |
| BitDefender | Trojan.GenericKDZ.108241 |
| Bkav | W32.AIDetectMalware |
| CTX | exe.trojan.generickdz |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| ESET-NOD32 | a variant of Win32/Packed.Themida.HZB |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.GenericKDZ.108241 (B) |
| F-Secure | Trojan.TR/Crypt.ZPACK.Gen |
| FireEye | Generic.mg.3d0bd95b0f36182c |
| Fortinet | W32/Themida.HZB!tr |
| GData | Trojan.GenericKDZ.108241 |
| Google | Detected |
| Gridinsoft | Trojan.Heur!.03A120A1 |
| Kaspersky | HEUR:Trojan.Win32.Generic |
| Lionic | Trojan.Win32.Themida.4!c |
| Malwarebytes | Trojan.Amadey |
| McAfee | Artemis!3D0BD95B0F36 |
| McAfeeD | Real Protect-LS!3D0BD95B0F36 |
| MicroWorld-eScan | Trojan.GenericKDZ.108241 |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| Rising | Trojan.Generic!8.C3 (LESS:bWQ1Oj0L2VsPNhgsaiCH+WNpvt8) |
| Sangfor | Trojan.Win32.Themida.V79f |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Generic.tc |
| Sophos | ML/PE-A |
| Symantec | ML.Attribute.HighConfidence |
| Tencent | Trojan-DL.Win32.Deyma.kh |
| Trapmine | malicious.high.ml.score |
| VBA32 | TScope.Malware-Cryptor.SB |
| VIPRE | Trojan.GenericKDZ.108241 |
| Varist | W32/Themida.CQ.gen!Eldorado |
| ZoneAlarm | HEUR:Trojan.Win32.Generic |
| Zoner | Probably Heur.ExeHeaderL |
| alibabacloud | Trojan:Win/Sabsik.FE |
Process list
| Name | Command line |
| 819c6.Trojan.exe | |
| WerFault.exe | -u -p 7660 -s 756 |
| WerFault.exe | -u -p 7660 -s 756 |
| WerFault.exe | -pss -s 440 -p 7660 -ip 7660 |