81e2f395b44d7f644e47b5d3fbf8618d1cac877566997ff85e8b70b6c5b24aa5
Classification: Malicious
81e2f395b44d7f644e47b5d3fbf8618d1cac877566997ff85e8b70b6c5b24aa5 is a malicious file sample. Linked to Sombrat malware. Detected by 46 antivirus engines.
Detection summary
- 46 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 1 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SOMBRAT (S0615)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Hybrid-Analysis | 2026-09-02 17:45:04 | 2026-09-02 17:45:04 | malicious-activity | |
| SombRAT | ThreatFox Abuse.ch | 2024-07-01 14:31:48 | 2024-07-02 03:49:00 | S0615 SombRAT | |
| Generic.Malware | MalwareBazaar Abuse.ch | 2024-07-01 13:59:47 | 2024-07-01 13:59:47 | malicious-activity |
Tags
win.sombrat evasiveSample information
- Filenames
- 81e2f395b44d7f644e47b5d3fbf8618d1cac877566997ff85e8b70b6c5b24aa5
- File type
- application/x-dosexec
- MD5
9e16214ee163b3f8bed83fd25b5d793b- SHA-1
c8349a3b4b44e33a5d0cd15e29207e9f7452ff4d- SHA-256
81e2f395b44d7f644e47b5d3fbf8618d1cac877566997ff85e8b70b6c5b24aa5- First indexed
- 2024-07-01 14:24:14
- Last updated
- 2026-09-02 17:45:04
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Trojan.GenericKD.73291055 |
| APEX | Malicious |
| AVG | Win32:Malware-gen |
| AhnLab-V3 | Trojan/Win.Strab.C5645627 |
| Alibaba | Trojan:Win32/Strab.31b90bd5 |
| Arcabit | Trojan.Generic.D45E552F |
| Avast | Win32:Malware-gen |
| Avira | TR/Redcap.caibz |
| BitDefender | Trojan.GenericKD.73291055 |
| Bkav | W32.AIDetectMalware |
| CrowdStrike | win/malicious_confidence_90% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 99) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.AutoIt.1410 |
| ESET-NOD32 | a variant of Win32/Injector.Autoit.GCO |
| Emsisoft | Trojan.GenericKD.73291055 (B) |
| F-Secure | Trojan.TR/Redcap.caibz |
| FireEye | Trojan.GenericKD.73291055 |
| Fortinet | AutoIt/Injector.AAD!tr |
| GData | Trojan.GenericKD.73291055 |
| Detected | |
| Ikarus | Trojan.Autoit |
| K7AntiVirus | Riskware ( 00584baa1 ) |
| K7GW | Riskware ( 00584baa1 ) |
| Kaspersky | Trojan.Win32.Strab.kum |
| Lionic | Trojan.Win32.AutoIt.4!c |
| MAX | malware (ai score=81) |
| Malwarebytes | Trojan.MalPack.AutoIt |
| McAfee | Artemis!9E16214EE163 |
| McAfeeD | ti!81E2F395B44D |
| MicroWorld-eScan | Trojan.GenericKD.73291055 |
| Microsoft | Trojan:Win32/Strab.GPCX!MTB |
| Paloalto | generic.ml |
| Panda | Trj/CI.A |
| Rising | Trojan.Injector/Autoit!1.FD30 (CLASSIC) |
| Skyhigh | BehavesLike.Win32.Dropper.dh |
| Sophos | Troj/AutoIt-DGJ |
| TrendMicro | Backdoor.Win32.ASYNCRAT.YXEFZZ |
| TrendMicro-HouseCall | Backdoor.Win32.ASYNCRAT.YXEFZZ |
| VBA32 | Trojan-Downloader.Autoit.gen |
| VIPRE | Trojan.GenericKD.73291055 |
| VirIT | Trojan.Win32.AutoIt_Heur.A |
| Webroot | W32.Trojan.Gen |
| ZoneAlarm | Trojan.Win32.Strab.kum |
| alibabacloud | Trojan:Win/Strab.GXI#3DGW |