85354c1c3ad99f6c010f945400e0f423d6aa91b2e06dda7462f7cf66eca40bcc
Classification: Malicious
85354c1c3ad99f6c010f945400e0f423d6aa91b2e06dda7462f7cf66eca40bcc is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-02.
Detection summary
- 50 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 2 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2026-09-02 22:45:05 |
2026-09-02 22:45:05 |
malicious-activity
|
|
| Generic Malware |
Cyber Threat Alliance |
2024-11-12 10:11:07 |
2024-11-12 10:11:07 |
|
|
| DCRat |
MalwareBazaar Abuse.ch |
2024-08-27 02:20:15 |
2024-08-27 02:20:15 |
malicious-activity
|
|
Sample information
- Filenames
- 85354c1c3ad99f6c010f945400e0f423d6aa91b2e06dda7462f7cf66eca40bcc, 3f9ea64983210fd43ed5c419fefae10c.exe
- File type
- application/x-dosexec
- MD5
3f9ea64983210fd43ed5c419fefae10c
- SHA-1
e666d7ae7062ef105aa9d53eb545eb114ff2592d
- SHA-256
85354c1c3ad99f6c010f945400e0f423d6aa91b2e06dda7462f7cf66eca40bcc
- First indexed
- 2024-08-27 04:18:36
- Last updated
- 2026-09-02 22:45:05
Antivirus detections
| Engine | Detection |
| ALYac | Gen:Variant.Ransom.Prometheus.2 |
| APEX | Malicious |
| AVG | Win32:RATX-gen [Trj] |
| Acronis | suspicious |
| AhnLab-V3 | Trojan/Win.FUJL.C5119684 |
| Arcabit | Trojan.Ransom.Prometheus.2 |
| Avast | Win32:RATX-gen [Trj] |
| Avira | HEUR/AGEN.1323984 |
| BitDefender | Gen:Variant.Ransom.Prometheus.2 |
| BitDefenderTheta | Gen:NN.ZemsilF.36812.lr0@aGF26Jdi |
| Bkav | W32.AIDetectMalware.CS |
| ClamAV | Win.Packed.Msilmamut-9950860-0 |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cybereason | malicious.983210 |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.PWS.StealerNET.124 |
| ESET-NOD32 | a variant of MSIL/Spy.Agent.DTP |
| Elastic | malicious (high confidence) |
| Emsisoft | Gen:Variant.Ransom.Prometheus.2 (B) |
| F-Secure | Heuristic.HEUR/AGEN.1323984 |
| FireEye | Generic.mg.3f9ea64983210fd4 |
| Fortinet | MSIL/Agent.DTP!tr.spy |
| GData | Gen:Variant.Ransom.Prometheus.2 |
| Google | Detected |
| Ikarus | Trojan.MSIL.Injector |
| K7AntiVirus | Spyware ( 0058ebd51 ) |
| K7GW | Spyware ( 0058ebd51 ) |
| Kaspersky | HEUR:Backdoor.MSIL.DCRat.gen |
| Kingsoft | malware.kb.c.990 |
| MAX | malware (ai score=88) |
| Malwarebytes | Generic.Malware.AI.DDS |
| MaxSecure | Trojan.Malware.121218.susgen |
| McAfee | Trojan-FUJL!3F9EA6498321 |
| McAfeeD | Real Protect-LS!3F9EA6498321 |
| MicroWorld-eScan | Gen:Variant.Ransom.Prometheus.2 |
| Rising | Backdoor.DcRat!8.129D9 (TFE:D:FJgJjfd5R0Q) |
| Sangfor | Trojan.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Generic.th |
| Sophos | ML/PE-A |
| Symantec | ML.Attribute.HighConfidence |
| Tencent | Trojan.Msil.Dcrat.xa |
| VIPRE | Gen:Variant.Ransom.Prometheus.2 |
| Varist | W32/MSIL_Agent.LQ.gen!Eldorado |
| VirIT | Trojan.Win32.MSIL_Heur.A |
| Zillya | Trojan.BasicGen.Win32.4 |
| ZoneAlarm | HEUR:Backdoor.MSIL.DCRat.gen |
| huorong | TrojanSpy/MSIL.Stealer.n |
| tehtris | Generic.Malware |