84b7f2bbf475502e02512471699322a3cb1a70383764422c8615d3bd2dc83961

Classification: Malicious

84b7f2bbf475502e02512471699322a3cb1a70383764422c8615d3bd2dc83961 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.

Detection summary

  • 27 antivirus detections
  • 1 IDS alerts
  • 5 processes observed
  • 3 contacted hosts
  • 2 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-03-20 12:30:03 2026-09-02 21:45:05 malicious-activity

Sample information

Filenames
84b7f2bbf475502e02512471699322a3cb1a70383764422c8615d3bd2dc83961, file
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
2098688 bytes
MD5
10d5974f394119c997097759cc979a7f
SHA-1
1962100320490540342494180180d613e97d630a
SHA-256
84b7f2bbf475502e02512471699322a3cb1a70383764422c8615d3bd2dc83961
First indexed
2024-03-20 12:19:41
Last updated
2026-09-02 21:45:05

Antivirus detections

EngineDetection
APEXMalicious
AVGWin32:TrojanX-gen [Trj]
AhnLab-V3Trojan/Win.TrojanX-gen.R636436
AvastWin32:TrojanX-gen [Trj]
BitDefenderThetaGen:NN.ZexaF.36802.aE0aaOxM!Mnk
CrowdStrikewin/malicious_confidence_100% (W)
Cylanceunsafe
DeepInstinctMALICIOUS
ESET-NOD32a variant of Win32/Agent.ADVG
Elasticmalicious (high confidence)
FireEyeGeneric.mg.10d5974f394119c9
GoogleDetected
GridinsoftTrojan.Heur!.038520A1
KasperskyHEUR:Trojan.Win32.Miner.gen
KingsoftWin32.HeurC.KVMH008.a
LionicTrojan.Win32.Miner.4!c
MalwarebytesMachineLearning/Anomalous.95%
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
SentinelOneStatic AI - Suspicious PE
SophosMal/RisePro-A
SymantecML.Attribute.HighConfidence
TencentWin32.Trojan.Miner.Iajl
Trapminemalicious.high.ml.score
ZoneAlarmVHO:Trojan.Win32.Convagent.gen
ZonerProbably Heur.ExeHeaderL
alibabacloudMiner:Win/Miner.gen
tehtrisGeneric.Malware

Network contacts

193.233.132.74 34.117.186.192 104.26.5.15

DNS requests

db-ip.com ipinfo.io

Process list

NameCommand line
file.exe
schtasks.exeschtasks /create /f /RU "%OSUSER%" /tr "%ALLUSERSPROFILE%\MPGPH131\MPGPH131.exe" /tn "MPGPH131 HR" /sc HOURLY /rl HIGHEST
schtasks.exeschtasks /create /f /RU "%OSUSER%" /tr "%ALLUSERSPROFILE%\MPGPH131\MPGPH131.exe" /tn "MPGPH131 LG" /sc ONLOGON /rl HIGHEST
MPGPH131.exe
RageMP131.exe