852f4955e3d61518e3653abba37ef23ae2d86a9ea94198856955a99d656fbc20

Classification: Malicious

852f4955e3d61518e3653abba37ef23ae2d86a9ea94198856955a99d656fbc20 is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02.

Detection summary

  • 46 antivirus detections
  • 0 IDS alerts
  • 5 processes observed
  • 0 contacted hosts
  • 9 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-08-01 17:00:03 2026-09-02 22:45:05 malicious-activity
Luca Stealer ThreatFox Abuse.ch 2024-08-02 21:00:21 2024-08-04 20:18:48

Tags

win.luca_stealer trojan bot

Sample information

Filenames
852f4955e3d61518e3653abba37ef23ae2d86a9ea94198856955a99d656fbc20, 2.exe
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
275968 bytes
MD5
8987604aedffcf3b2ed8033f4b41ce84
SHA-1
fb8c15a8716be523b364aa647ced8e546cab025a
SHA-256
852f4955e3d61518e3653abba37ef23ae2d86a9ea94198856955a99d656fbc20
First indexed
2024-08-01 16:52:23
Last updated
2026-09-02 22:45:05

Antivirus detections

EngineDetection
ALYacGen:Variant.Zusy.534615
APEXMalicious
AhnLab-V3Trojan/Win.Generic.C5566047
AlibabaTrojan:Win32/Tasker.68835697
ArcabitTrojan.Zusy.D82857
AviraHEUR/AGEN.1319014
BitDefenderGen:Variant.Zusy.534615
BkavW32.AIDetectMalware
CTXexe.trojan.generic
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
DrWebTrojan.MulDrop28.1326
ESET-NOD32Win32/Agent.AGPC trojan
Elasticmalicious (high confidence)
EmsisoftGen:Variant.Zusy.534615 (B)
F-SecureHeuristic.HEUR/AGEN.1319014
FortinetPossibleThreat.ARN.M
GDataWin32.Trojan.ZharkBot.A
GoogleDetected
IkarusTrojan.Win32.Amadey
K7AntiVirusTrojan ( 005e85171 )
K7GWTrojan ( 005e85171 )
KingsoftWin32.HeurC.KVMH017.a
LionicTrojan.Win32.Amadey.4!c
MalwarebytesGeneric.Malware/Suspicious
McAfeeDReal Protect-LS!8987604AEDFF
MicroWorld-eScanGen:Variant.Zusy.534615
MicrosoftTrojan:Win32/Amadey.KAA!MTB
Paloaltogeneric.ml
PandaTrj/Chgt.AD
SymantecTrojan.Whispergate
TencentMalware.Win32.Gencirc.1414c375
Trapminesuspicious.low.ml.score
TrellixENSArtemis!8987604AEDFF
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9t
VBA32Trojan.Tasker
VIPREGen:Variant.Zusy.534615
VaristW32/ABTrojan.HZRV-4814
VirITTrojan.Win32.Genus.WFA
WebrootW32.Trojan.Amadey
XcitiumMalware@#tpl7m49f6ilk
ZillyaTrojan.Agent.Win32.3990544
alibabacloudTrojan:Win/Acll.Gen
huorongTrojan/Agent.buw

DNS requests

solutionhub.cc applyzxcksdia.shop arriveoxpzxo.shop bindceasdiwozx.shop catchddkxozvp.shop conformfucdioz.shop contemplateodszsv.shop declaredczxi.shop replacedoxcjzp.shop

Process list

NameCommand line
2.exe
schtasks.exe%WINDIR%\System32\schtasks.exe /Create /SC MINUTE /MO 1 /TN Aptitude.exe /TR "%TEMP%\43895672139432\Aptitude.exe" /F
Aptitude.exe
Aptitude.exe
Aptitude.exe