84da040c1be206b9bc256b9682c1da38d3f6b2f71b6d829a95f1b703d6f44ca7
Classification: Malicious
84da040c1be206b9bc256b9682c1da38d3f6b2f71b6d829a95f1b703d6f44ca7 is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02.
Detection summary
- 69 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2026-09-02 22:45:08 |
2026-09-02 22:45:08 |
malicious-activity
|
|
| Generic.Malware |
MalwareBazaar Abuse.ch |
2024-09-07 12:32:27 |
2024-09-07 12:32:27 |
malicious-activity
|
|
Tags
windows-server-utility
Sample information
- Filenames
- 84da040c1be206b9bc256b9682c1da38d3f6b2f71b6d829a95f1b703d6f44ca7, Virus.Hijack.ATA_virussign.com_b7002dd1af31510dddda36a278fb05a3.exe
- File type
- application/x-dosexec
- MD5
b7002dd1af31510dddda36a278fb05a3
- SHA-1
8cd39d313555c2f1aa0531fad3dc1e3e15916181
- SHA-256
84da040c1be206b9bc256b9682c1da38d3f6b2f71b6d829a95f1b703d6f44ca7
- First indexed
- 2024-09-07 13:21:56
- Last updated
- 2026-09-02 22:45:08
Antivirus detections
| Engine | Detection |
| ALYac | Dropped:Backdoor.Padodor.BJ |
| APEX | Malicious |
| AVG | Win32:TrojanX-gen [Trj] |
| Acronis | suspicious |
| AhnLab-V3 | Win-Trojan/Berbew.51712 |
| Alibaba | Backdoor:Win32/Berbew.36d |
| Antiy-AVL | Trojan[Proxy]/Win32.Qukart.gen |
| Arcabit | Backdoor.Padodor.BJ |
| Avast | Win32:TrojanX-gen [Trj] |
| Avira | TR/Patched.Ren.Gen |
| Baidu | Win32.Trojan-Spy.Quart.a |
| BitDefender | Dropped:Backdoor.Padodor.BJ |
| BitDefenderTheta | AI:Packer.3ABEC8D81D |
| Bkav | W32.AIDetectMalware |
| CAT-QuickHeal | Backdoor.Berbew.A6.MUE |
| ClamAV | Win.Trojan.Crypted-32 |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cybereason | malicious.1af315 |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | BackDoor.HangUp.43791 |
| ESET-NOD32 | a variant of Win32/Padodor.NAX |
| Elastic | malicious (high confidence) |
| Emsisoft | Dropped:Backdoor.Padodor.BJ (B) |
| F-Secure | Trojan.TR/Patched.Ren.Gen |
| FireEye | Generic.mg.b7002dd1af31510d |
| Fortinet | W32/Qukart.A!tr |
| GData | Win32.Trojan.PSE.11RRK8R |
| Google | Detected |
| Gridinsoft | Trojan.Heur!.03216021 |
| Ikarus | Trojan.Win32.Cerber |
| Jiangmin | TrojanProxy.Qukart.pui |
| K7AntiVirus | Trojan ( 005993611 ) |
| K7GW | Trojan ( 005993611 ) |
| Kaspersky | Trojan-Proxy.Win32.Qukart.gen |
| Kingsoft | Win32.Trojan-Proxy.Qukart.gen |
| Lionic | Trojan.Win32.Berbew.h!c |
| MAX | malware (ai score=84) |
| Malwarebytes | Generic.Malware.AI.DDS |
| MaxSecure | Proxy.Qukart.gen |
| McAfee | Generic Malware.bj |
| McAfeeD | Real Protect-LS!B7002DD1AF31 |
| MicroWorld-eScan | Dropped:Backdoor.Padodor.BJ |
| Microsoft | Backdoor:Win32/Berbew!pz |
| NANO-Antivirus | Trojan.Win32.Qukart.fokxzm |
| Paloalto | generic.ml |
| Panda | Trj/Genetic.gen |
| Rising | Backdoor.Berbew!1.AE0A (CLASSIC) |
| Sangfor | Trojan.Win32.Save.a |
| Skyhigh | BehavesLike.Win32.Generic.tc |
| Sophos | Troj/Agent-BGRP |
| Symantec | Backdoor.Berbew.F |
| TACHYON | Backdoor/W32.Padodor |
| Tencent | Trojan-Proxy.Win32.Qukart.hbm |
| Trapmine | malicious.high.ml.score |
| TrendMicro | TROJ_GEN.R03BC0CI124 |
| TrendMicro-HouseCall | TROJ_GEN.R03BC0CI124 |
| VBA32 | BScope.Backdoor.Berbew |
| VIPRE | Dropped:Backdoor.Padodor.BJ |
| Varist | W32/Trojan.LSZT-4929 |
| VirIT | Worm.Win32.Berbew.G |
| Xcitium | TrojWare.Win32.TrojanDownloader.Berbew.DA@8iilci |
| Zillya | Trojan.PadodorGen.Win32.1 |
| ZoneAlarm | Trojan-Proxy.Win32.Qukart.gen |
| alibabacloud | Backdoor:Win/Berbew.AZ |
| huorong | Backdoor/Berbew.c |
| tehtris | Generic.Malware |
| SentinelOne | Static AI - Malicious PE |