8254d25a2c54050f8621c6ff69869e94b4cba878b5b246c00ac73377b4ae65b1

Classification: Malicious

8254d25a2c54050f8621c6ff69869e94b4cba878b5b246c00ac73377b4ae65b1 is a malicious file sample. Linked to Remcos malware. Detected by 91 antivirus engines.

Detection summary

  • 91 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 1 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: REMCOS (S0332)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2026-09-02 18:45:06 2026-09-02 18:45:06 malicious-activity
Remcos ThreatFox Abuse.ch 2024-08-15 18:21:19 2024-08-17 14:43:48 S0332 Remcos
RemcosRAT MalwareBazaar Abuse.ch 2024-08-15 04:27:21 2024-08-15 04:27:21 malicious-activity S0332 Remcos

Tags

win.remcos remcosrat remvio socmer infostealer

Sample information

Filenames
8254d25a2c54050f8621c6ff69869e94b4cba878b5b246c00ac73377b4ae65b1, INQUIRY#84790-AUGUST24.exe
File type
application/x-dosexec
MD5
5de436da0671832d1a6fb30494bced17
SHA-1
bae3694ff4ab5c83f9f5c64d9cd1a0c2417cd582
SHA-256
8254d25a2c54050f8621c6ff69869e94b4cba878b5b246c00ac73377b4ae65b1
First indexed
2024-08-15 05:22:39
Last updated
2026-09-02 18:45:06

Antivirus detections

EngineDetection
ALYacTrojan.Generic.36715552
APEXMalicious
AVGWin32:MalwareX-gen [Trj]
AhnLab-V3Trojan/Win.SnakeKeylogger.C5658654
AlibabaTrojanPSW:MSIL/Remcos.50ce563e
Antiy-AVLTrojan[PSW]/MSIL.Stealer
AvastWin32:MalwareX-gen [Trj]
AviraTR/AVI.Remcos.ykpzz
BitDefenderTrojan.Generic.36715552
BitDefenderThetaGen:NN.ZemsilF.36812.an0@am!Wxtl
BkavW32.AIDetectMalware.CS
CAT-QuickHealTrojanpws.Msil
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.a06718
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebBackDoor.AgentTeslaNET.20
ESET-NOD32a variant of MSIL/Kryptik.AMDJ
Elasticmalicious (high confidence)
EmsisoftTrojan.Generic.36715552 (B)
F-SecureTrojan.TR/AVI.Remcos.ykpzz
FireEyeGeneric.mg.5de436da0671832d
FortinetMSIL/Agent.PWSX!tr
GDataTrojan.Generic.36715552
GoogleDetected
GridinsoftTrojan.Win32.Agent.sa
IkarusTrojan.MSIL.Inject
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
KasperskyHEUR:Trojan-PSW.MSIL.Stealer.gen
KingsoftMSIL.Trojan-PSW.Stealer.gen
LionicTrojan.Win32.Stealer.12!c
MAXmalware (ai score=85)
MalwarebytesMalware.AI.1967845287
MaxSecureTrojan.Malware.74396735.susgen
McAfeeArtemis!5DE436DA0671
McAfeeDReal Protect-LS!5DE436DA0671
MicroWorld-eScanTrojan.Generic.36715552
MicrosoftTrojan:MSIL/Remcos.KAAY!MTB
NANO-AntivirusTrojan.Win32.AgentTeslaNET.kqwwyu
Paloaltogeneric.ml
PandaTrj/GdSda.A
RisingMalware.Obfus/[email protected] (RDM.MSIL2:D/U2VjJAhOdWh0gKQjx/qA)
SangforTrojan.Win32.Save.MSIL_Inject
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.tc
SophosTroj/Krypt-ABH
SymantecScr.Malcode!gdn33
TencentMalware.Win32.Gencirc.14168f99
Trapminesuspicious.low.ml.score
TrendMicroBackdoor.Win32.REMCOS.YXEHNZ
TrendMicro-HouseCallBackdoor.Win32.REMCOS.YXEHNZ
VBA32TScope.Trojan.MSIL
VIPRETrojan.Generic.36715552
VaristW32/ABTrojan.QEUE-2134
VirITTrojan.Win32.MSIL_Heur.A
WebrootW32.Trojan.KAAY
XcitiumMalware@#1qa73t5f2ukjg
ZoneAlarmHEUR:Trojan-PSW.MSIL.Stealer.gen
alibabacloudTrojan[stealer]:MSIL/Stealer.gyf
huorongTrojanSpy/MSIL.AgentTesla.te
ALYacGen:Variant.Jalapeno.18058
AVGWin32:MalwareX-gen [Misc]
ArcabitTrojan.Jalapeno.D468A
AvastWin32:MalwareX-gen [Misc]
AviraHEUR/AGEN.1378074
BitDefenderGen:Variant.Jalapeno.18058
CTXexe.trojan.msil
ESET-NOD32MSIL/Kryptik.AMDJ trojan
EmsisoftGen:Variant.Jalapeno.18058 (B)
F-SecureHeuristic.HEUR/AGEN.1378074
FortinetMSIL/Malheur.A!tr
GDataGen:Variant.Jalapeno.18058
JiangminTrojan.PSW.MSIL.euwi
K7AntiVirusTrojan ( 700000201 )
K7GWTrojan ( 700000201 )
MalwarebytesMalware.AI.3952371266
McAfeeDti!8254D25A2C54
MicroWorld-eScanGen:Variant.Jalapeno.18058
MicrosoftTrojan:MSIL/Lokibot.GM!MTB
SangforInfostealer.Msil.Agent.Vco6
TencentTrojan.MSIL.AgentTesla.16003029
TrellixENSArtemis!5DE436DA0671
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9t
VIPREGen:Variant.Jalapeno.18058
VaristW32/MSIL_Kryptik.LKU.gen!Eldorado
YandexTrojan.Igent.b2OgGI.19
ZillyaTrojan.Stealer.Win32.176402
ZoneAlarmTroj/Krypt-ABH
ZonerTrojan.Win32.175513
alibabacloudTrojan[Spy]:Win/SnakeKeyLogger.AZZJ3DGW

Network contacts

64.188.18.85