83d48e0c93caf20e68768cb684614e74b34b2708bc2f35754e3107db52ea4a80
Classification: Malicious
83d48e0c93caf20e68768cb684614e74b34b2708bc2f35754e3107db52ea4a80 is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02.
Detection summary
- 27 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 1 contacted hosts
- 14 DNS requests
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Hybrid-Analysis | 2026-09-02 20:45:06 | 2026-09-02 20:45:06 | malicious-activity | |
| Generic.Malware | MalwareBazaar Abuse.ch | 2024-06-03 06:46:55 | 2024-06-03 06:46:55 | malicious-activity |
Sample information
- Filenames
- 83d48e0c93caf20e68768cb684614e74b34b2708bc2f35754e3107db52ea4a80, Reconfirm bank details.exe
- File type
- application/x-dosexec
- MD5
a89837682de748b36fa219aaba08c847- SHA-1
8118ea9051a28b73f54191655c36dfc35805b56a- SHA-256
83d48e0c93caf20e68768cb684614e74b34b2708bc2f35754e3107db52ea4a80- First indexed
- 2024-06-03 07:19:33
- Last updated
- 2026-09-02 20:45:06
Antivirus detections
| Engine | Detection |
|---|---|
| APEX | Malicious |
| AVG | PWSX-gen [Trj] |
| AhnLab-V3 | Malware/Win.Generic.C5628775 |
| Alibaba | Trojan:MSIL/GenKryptik.87e56b23 |
| Avast | PWSX-gen [Trj] |
| Bkav | W32.AIDetectMalware.CS |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.Packed2.46843 |
| ESET-NOD32 | a variant of MSIL/GenKryptik.GYFD |
| Elastic | malicious (high confidence) |
| Fortinet | MSIL/GenKryptik.FQQD!tr |
| Detected | |
| Kaspersky | HEUR:Trojan.MSIL.Crypt.gen |
| Malwarebytes | Malware.AI.3791084380 |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfeeD | ti!83D48E0C93CA |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| Sangfor | Trojan.Win32.Save.a |
| Skyhigh | BehavesLike.Win32.Generic.jc |
| Sophos | Troj/Krypt-ABH |
| Symantec | Scr.Malcode!gdn33 |
| Trapmine | malicious.moderate.ml.score |
| VBA32 | TrojanLoader.MSIL.DaVinci.Heur |
| Varist | W32/MSIL_Kryptik.LAH.gen!Eldorado |
| ZoneAlarm | HEUR:Trojan.MSIL.Crypt.gen |
Network contacts
DNS requests
www.0bi8.fun www.birthingwitht.com www.chillingtime.shop www.drednents.es www.duobao698.com www.galatalosangeles.org www.happydomain.shop www.omilux.vn www.pricekaboom.com www.shopnaya.fr www.sqlite.org www.touchdres.top www.yamlex.ru www.ycwtch.co.uk