81ccbbfcfd5e8991632a16d6b4d28b36ef74409773b3e5622cf58cf43638ce07

Classification: Malicious

81ccbbfcfd5e8991632a16d6b4d28b36ef74409773b3e5622cf58cf43638ce07 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.

Detection summary

  • 32 antivirus detections
  • 0 IDS alerts
  • 4 processes observed
  • 0 contacted hosts
  • 0 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-10-29 21:45:04 2026-09-02 17:45:04 malicious-activity

Tags

evasive

Sample information

Filenames
81ccbbfcfd5e8991632a16d6b4d28b36ef74409773b3e5622cf58cf43638ce07, file.exe
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
2094592 bytes
MD5
31c844530d857c4266248543c40284cc
SHA-1
97f7aae6867695e025abdc5e1a7d446d7c5b875f
SHA-256
81ccbbfcfd5e8991632a16d6b4d28b36ef74409773b3e5622cf58cf43638ce07
First indexed
2024-10-29 21:34:14
Last updated
2026-09-02 17:45:05

Antivirus detections

EngineDetection
APEXMalicious
AVGWin32:BackdoorX-gen [Trj]
AhnLab-V3Trojan/Win.Generic.R674227
AvastWin32:BackdoorX-gen [Trj]
AviraTR/Crypt.TPM.Gen
BkavW32.AIDetectMalware
CrowdStrikewin/malicious_confidence_90% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
ESET-NOD32a variant of Win32/Packed.Themida.HVJ
Elasticmalicious (high confidence)
F-SecureTrojan.TR/Crypt.TPM.Gen
FireEyeGeneric.mg.31c844530d857c42
FortinetW32/Themida.HZB!tr
GDataWin32.Trojan-Stealer.StealC.C
GridinsoftTrojan.Heur!.03A120A1
KasperskyHEUR:Trojan.Win32.Miner.vho
KingsoftWin32.HeurC.KVMH008.a
MalwarebytesTrojan.Amadey
MaxSecureTrojan.Malware.300983.susgen
McAfeeDReal Protect-LS!31C844530D85
MicrosoftTrojanDownloader:Win32/Upatre!ml
Rising[email protected] (RDML:yhRsal0Y3Url6YeS7c56vA)
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.tc
SophosGeneric ML PUA (PUA)
SymantecML.Attribute.HighConfidence
Trapminemalicious.high.ml.score
VBA32BScope.Trojan.Downloader
ZoneAlarmHEUR:Trojan.Win32.Miner.vho
ZonerProbably Heur.ExeHeaderL

Process list

NameCommand line
file.exe
WerFault.exe-u -p 2236 -s 580
WerFault.exe-u -p 2236 -s 580
WerFault.exe-pss -s 164 -p 2236 -ip 2236