849e62ba24f2f73f5f1cdc66dca6800777cf8b6361d3a01be7f919c766491cf2

Classification: Malicious

849e62ba24f2f73f5f1cdc66dca6800777cf8b6361d3a01be7f919c766491cf2 is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02.

Detection summary

  • 71 antivirus detections (70% detection ratio)
  • 1 IDS alerts
  • 4 processes observed
  • 3 contacted hosts
  • 2 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2023-11-13 16:45:03 2026-09-02 21:45:06 malicious-activity
Generic.Malware MalwareBazaar Abuse.ch 2023-11-12 21:34:40 2023-11-12 21:34:40 malicious-activity

Tags

evasive windows-server-utility

Sample information

Filenames
849e62ba24f2f73f5f1cdc66dca6800777cf8b6361d3a01be7f919c766491cf2, 849e6.Trojan.exe, 0001.exe
File type
application/x-dosexec
Size
186880 bytes
MD5
477cd89aae640482eb9a9e2ef7427c6f
SHA-1
21c1562a5dde2e0df70f781b787f4c8d70f7cf42
SHA-256
849e62ba24f2f73f5f1cdc66dca6800777cf8b6361d3a01be7f919c766491cf2
First indexed
2023-11-12 22:18:15
Last updated
2026-09-02 21:45:06

Antivirus detections

EngineDetection
LionicTrojan.Win32.Seraph.a!c
MicroWorld-eScanGen:Variant.Lazy.428562
SkyhighBehavesLike.Win32.Infected.cz
ALYacGen:Variant.Lazy.428562
SangforDownloader.Msil.Lazy.V3bk
K7AntiVirusTrojan-Downloader ( 005a013e1 )
BitDefenderGen:Variant.Lazy.428562
K7GWTrojan-Downloader ( 005a013e1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.36792.lm0@aCl8XTn
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.OXE
CynetMalicious (score: 100)
APEXMalicious
KasperskyHEUR:Trojan-Downloader.MSIL.Seraph.gen
AlibabaTrojanDownloader:MSIL/Seraph.39c30778
ViRobotTrojan.Win.Z.Strictor.186880
RisingDownloader.Agent!8.B23 (CLOUD)
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1323344
VIPREGen:Variant.Lazy.428562
TrendMicroTROJ_GEN.R06CC0XK723
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.477cd89aae640482
EmsisoftGen:Variant.Lazy.428562 (B)
IkarusTrojan.MSIL.Crypt
VaristW32/MSIL_Kryptik.KAR.gen!Eldorado
AviraHEUR/AGEN.1323344
Kingsoftmalware.kb.c.979
MicrosoftTrojan:Win32/ScarletFlash.A
ArcabitTrojan.Lazy.D68A12
ZoneAlarmHEUR:Trojan-Downloader.MSIL.Seraph.gen
GDataGen:Variant.Lazy.428562
GoogleDetected
AhnLab-V3Trojan/Win.AgentTesla.R419186
McAfeeArtemis!477CD89AAE64
MAXmalware (ai score=89)
DeepInstinctMALICIOUS
Cylanceunsafe
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R06CC0XK723
TencentMalware.Win32.Gencirc.13f4b2b6
YandexTrojan.Igent.b1asjV.3
SentinelOneStatic AI - Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.OXE!tr.dldr
AVGWin32:KeyloggerX-gen [Trj]
Cybereasonmalicious.a5dde2
AvastWin32:KeyloggerX-gen [Trj]
AlibabaTrojanDownloader:MSIL/Tnega.33aba474
BkavW32.AIDetectMalware.CS
CTXexe.trojan.msil
CylanceUnsafe
DrWebBackDoor.SpyBotNET.76
FortinetMSIL/Agent.PWL!tr.dldr
JiangminTrojanDownloader.MSIL.aqdk
MalwarebytesMalware.AI.3810889592
MaxSecureTrojan.Malware.74570710.susgen
McAfeeDReal Protect-LS!477CD89AAE64
MicrosoftTrojan:MSIL/Tnega!MSR
NANO-AntivirusTrojan.Win32.Seraph.kkimew
Paloaltogeneric.ml
TACHYONTrojan-Downloader/W32.DN-Seraph.186880.C
TencentMsil.Trojan-Downloader.Ader.Iajl
VBA32TScope.Trojan.MSIL
VirITTrojan.Win32.Genus.UFK
XcitiumMalware@#1egx3erewuw62
ZillyaDownloader.Agent.Win32.535130
alibabacloudTrojan[downloader]:MSIL/Seraph.gen
huorongTrojan/MSIL.Agent.dk

Network contacts

102.218.215.23 5.9.248.150 162.159.138.232

DNS requests

cclafrica.co.ke discord.com

Process list

NameCommand line
849e6.Trojan.exe
849e6.Trojan.exe
teamviewers.exe
teamviewers.exe