81f680191094ca2497c7798b37b83009157a7201dc0f27839c2860d5eb968fd1

Classification: Malicious

81f680191094ca2497c7798b37b83009157a7201dc0f27839c2860d5eb968fd1 is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02.

Detection summary

  • 28 antivirus detections (38% detection ratio)
  • 0 IDS alerts
  • 4 processes observed
  • 0 contacted hosts
  • 0 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2023-11-02 10:00:04 2026-09-02 17:45:03 malicious-activity
Generic.Malware MalwareBazaar Abuse.ch 2023-11-02 09:42:10 2023-11-02 09:42:10 malicious-activity

Sample information

Filenames
81f680191094ca2497c7798b37b83009157a7201dc0f27839c2860d5eb968fd1, RE.Documents Purchase Order products 23100290683v pdf.exe
File type
PE32 executable (GUI) Intel 80386 Mono/.Net assemb ...
Size
549376 bytes
MD5
646d8eec77ad22f3736542618cca0039
SHA-1
3cfff1e1e7dd6a71ab5998824a445ec1f2a1037c
SHA-256
81f680191094ca2497c7798b37b83009157a7201dc0f27839c2860d5eb968fd1
First indexed
2023-11-02 09:45:05
Last updated
2026-09-02 17:45:03

Antivirus detections

EngineDetection
LionicTrojan.Win32.Taskun.4!c
Elasticmalicious (high confidence)
SkyhighBehavesLike.Win32.Generic.hc
McAfeeArtemis!646D8EEC77AD
MalwarebytesMachineLearning/Anomalous.97%
SangforTrojan.Msil.Agent.Vb6v
Cybereasonmalicious.1e7dd6
VirITTrojan.Win32.MSIL_Heur.A
SymantecScr.Malcode!gdn34
ESET-NOD32a variant of MSIL/Kryptik.AKAA
APEXMalicious
KasperskyUDS:Trojan-Spy.MSIL.Noon.gen
RisingMalware.Obfus/[email protected] (RDM.MSIL2:rToqBXTaCbE1NpcgBEkq5A)
SophosTroj/Krypt-ABH
IkarusWin32.Outbreak
GoogleDetected
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:Trojan-Spy.MSIL.Noon.gen
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Chgt.AD
SentinelOneStatic AI - Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.GLXZ!tr
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

Process list

NameCommand line
RE.DocumentsPurchaseOrderproducts23100290683vpdf.exe
RE.DocumentsPurchaseOrderproducts23100290683vpdf.exe
RE.DocumentsPurchaseOrderproducts23100290683vpdf.exe
RE.DocumentsPurchaseOrderproducts23100290683vpdf.exe