85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2

Classification: Malicious

85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2 is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-02.

Detection summary

  • 12 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 3 contacted hosts
  • 10 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2026-09-02 22:45:06 2026-09-02 22:45:06 malicious-activity
Luca Stealer ThreatFox Abuse.ch 2024-08-04 20:41:18 2024-08-06 20:18:26
Generic.Malware MalwareBazaar Abuse.ch 2024-08-04 11:38:23 2024-08-04 11:38:23 malicious-activity

Tags

win.luca_stealer malicious

Sample information

Filenames
85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2, 2.bin
File type
application/x-dosexec
MD5
b8e7f0d969e7893c42faf8069df80375
SHA-1
3fa8a91c34121407a21347a9f6b21db555f70a1e
SHA-256
85140e33cbab3cb9785e9e3de75562d852c8217d4c96e379f76c367ebb4428d2
First indexed
2024-08-04 12:18:47
Last updated
2026-09-02 22:45:06

Antivirus detections

EngineDetection
AhnLab-V3Trojan/Win.Evo-gen.C5558850
AviraHEUR/AGEN.1372589
BkavW64.AIDetectMalware
CynetMalicious (score: 99)
ESET-NOD32a variant of WinGo/TrojanDropper.Agent.CW
Elasticmalicious (high confidence)
F-SecureHeuristic.HEUR/AGEN.1372589
GoogleDetected
IkarusTrojan-Dropper.WinGo.Agent
MicrosoftTrojan:Win32/Wacatac.B!ml
SentinelOneStatic AI - Suspicious PE
SymantecML.Attribute.HighConfidence

Network contacts

150.171.109.74 34.209.195.255 173.223.0.227

DNS requests

bravedreacisopm.shop broccoltisop.shop effectivedoxzj.shop grassytaisol.shop horizonvxjis.shop parntorpkxzlp.shop shellfyyousdjz.shop steamcommunity.com stimultaionsppzv.shop www.noticeofpleadings.net