85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2
Classification: Malicious
85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2 is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-02.
Detection summary
- 12 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 3 contacted hosts
- 10 DNS requests
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Hybrid-Analysis | 2026-09-02 22:45:06 | 2026-09-02 22:45:06 | malicious-activity | |
| Luca Stealer | ThreatFox Abuse.ch | 2024-08-04 20:41:18 | 2024-08-06 20:18:26 | ||
| Generic.Malware | MalwareBazaar Abuse.ch | 2024-08-04 11:38:23 | 2024-08-04 11:38:23 | malicious-activity |
Tags
win.luca_stealer maliciousSample information
- Filenames
- 85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2, 2.bin
- File type
- application/x-dosexec
- MD5
b8e7f0d969e7893c42faf8069df80375- SHA-1
3fa8a91c34121407a21347a9f6b21db555f70a1e- SHA-256
85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2- First indexed
- 2024-08-04 12:18:47
- Last updated
- 2026-09-02 22:45:06
Antivirus detections
| Engine | Detection |
|---|---|
| AhnLab-V3 | Trojan/Win.Evo-gen.C5558850 |
| Avira | HEUR/AGEN.1372589 |
| Bkav | W64.AIDetectMalware |
| Cynet | Malicious (score: 99) |
| ESET-NOD32 | a variant of WinGo/TrojanDropper.Agent.CW |
| Elastic | malicious (high confidence) |
| F-Secure | Heuristic.HEUR/AGEN.1372589 |
| Detected | |
| Ikarus | Trojan-Dropper.WinGo.Agent |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| SentinelOne | Static AI - Suspicious PE |
| Symantec | ML.Attribute.HighConfidence |
Network contacts
DNS requests
bravedreacisopm.shop broccoltisop.shop effectivedoxzj.shop grassytaisol.shop horizonvxjis.shop parntorpkxzlp.shop shellfyyousdjz.shop steamcommunity.com stimultaionsppzv.shop www.noticeofpleadings.net