848ccff6a8e523f7e0a7a787b480adad7cf7d0ec6a93362a6a3e94e0e5e93e8d
Classification: Malicious
848ccff6a8e523f7e0a7a787b480adad7cf7d0ec6a93362a6a3e94e0e5e93e8d is a malicious file sample. Linked to Lumma Stealer malware.
Detection summary
- 29 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: LUMMA STEALER (S1213)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Hybrid-Analysis | 2026-09-02 21:45:06 | 2026-09-02 21:45:06 | malicious-activity | |
| Lumma Stealer | ThreatFox Abuse.ch | 2025-04-02 16:34:32 | 2025-04-04 17:29:07 | S1213 Lumma Stealer | |
| LummaStealer | MalwareBazaar Abuse.ch | 2024-12-27 22:14:02 | 2024-12-27 22:14:02 | malicious-activity | S1213 Lumma Stealer |
Tags
win.lumma lummac2 stealerSample information
- Filenames
- 848ccff6a8e523f7e0a7a787b480adad7cf7d0ec6a93362a6a3e94e0e5e93e8d, WonderHack.exe
- File type
- application/x-dosexec
- MD5
83614dc842994c0adabd914b7273d6cc- SHA-1
4600ed64d6d42dec8f26d503b3af6af2c183a44f- SHA-256
848ccff6a8e523f7e0a7a787b480adad7cf7d0ec6a93362a6a3e94e0e5e93e8d- First indexed
- 2024-12-27 23:20:09
- Last updated
- 2026-09-02 21:45:06
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Gen:Variant.Lazy.632674 |
| AVG | Win32:Evo-gen [Trj] |
| Antiy-AVL | GrayWare/Win32.Kryptik.gpyt |
| Arcabit | Trojan.Lazy.D9A762 |
| Avast | Win32:Evo-gen [Trj] |
| BitDefender | Gen:Variant.Lazy.632674 |
| Bkav | W32.AIDetectMalware |
| CTX | exe.unknown.lazy |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| ESET-NOD32 | a variant of Win32/GenKryptik.HEYJ |
| Elastic | malicious (high confidence) |
| Emsisoft | Gen:Variant.Lazy.632674 (B) |
| FireEye | Generic.mg.83614dc842994c0a |
| GData | Gen:Variant.Lazy.632674 |
| Detected | |
| Ikarus | Trojan.Win32.Agent |
| Kaspersky | HEUR:Trojan.Win32.Stelpak.gen |
| Kingsoft | malware.kb.a.891 |
| MicroWorld-eScan | Gen:Variant.Lazy.632674 |
| Microsoft | Trojan:Win32/Caynamer.A!ml |
| Rising | Stealer.Stealerc!8.17BE0 (TFE:1:SiW5RhvHhBS) |
| Sangfor | Trojan.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Generic.hc |
| Sophos | Generic ML PUA (PUA) |
| Symantec | ML.Attribute.HighConfidence |
| VIPRE | Gen:Variant.Lazy.632674 |
| Webroot | W32.ConvaGent |