8545fedaeb113fdb4000b3f6a8d0f0f4694f9198203086a7d1230385a5180f78

Classification: Malicious

8545fedaeb113fdb4000b3f6a8d0f0f4694f9198203086a7d1230385a5180f78 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.

Detection summary

  • 55 antivirus detections
  • 0 IDS alerts
  • 4 processes observed
  • 0 contacted hosts
  • 1 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2025-07-19 11:15:07 2026-09-02 22:45:04 malicious-activity

Sample information

Filenames
8545fedaeb113fdb4000b3f6a8d0f0f4694f9198203086a7d1230385a5180f78
File type
PE32 executable (GUI) Intel 80386 Mono/.Net assemb ...
Size
809728 bytes
MD5
c8b4fb2984a495c19cc5d4dcc1922914
SHA-1
bbc25258b543805926d034564015a2e4d40b0647
SHA-256
8545fedaeb113fdb4000b3f6a8d0f0f4694f9198203086a7d1230385a5180f78
First indexed
2025-07-19 11:00:37
Last updated
2026-09-02 22:45:05

Antivirus detections

EngineDetection
ALYacGen:Variant.Ser.Lazy.5885
APEXMalicious
AhnLab-V3Trojan/Win.Injuke.C5588330
AlibabaBackdoor:MSIL/Injuke.8a19049b
ArcabitTrojan.Ser.Lazy.D16FD
AviraTR/AD.Nanocore.vsdii
BitDefenderGen:Variant.Ser.Lazy.5885
BkavW32.AIDetectMalware.CS
CAT-QuickHealTrojan.Ghanarava.1731237325922914
CTXexe.trojan.msil
ClamAVWin.Trojan.EmbeddedDotNetBinary-9940868-0
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebTrojan.Inject4.30867
ESET-NOD32a variant of MSIL/Kryptik.AKUB
Elasticmalicious (high confidence)
EmsisoftGen:Variant.Ser.Lazy.5885 (B)
F-SecureTrojan.TR/AD.Nanocore.vsdii
FortinetMSIL/Kryptik.AKTT!tr
GDataGen:Variant.Ser.Lazy.5885
GoogleDetected
IkarusTrojan-Spy.MSIL.AgentTesla
K7AntiVirusTrojan ( 005b148d1 )
K7GWTrojan ( 005b148d1 )
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
KingsoftMSIL.Backdoor.Crysan.gen
MalwarebytesTrojan.Crypt.MSIL
MaxSecureTrojan.Malware.74418669.susgen
McAfeeDReal Protect-LS!C8B4FB2984A4
MicroWorld-eScanGen:Variant.Ser.Lazy.5885
MicrosoftTrojan:MSIL/Injuke.CVAA!MTB
NANO-AntivirusTrojan.Win32.Crysan.kjfvju
Paloaltogeneric.ml
PandaTrj/GdSda.A
RisingMalware.Obfus/[email protected] (RDM.MSIL2:5LZS5z7hZ5/pGSxjCAMcIw)
SangforBackdoor.Msil.Kryptik.Vas9
SentinelOneStatic AI - Malicious PE
SkyhighArtemis!Trojan
SophosMal/Generic-S
SymantecDownloader
TencentMalware.Win32.Gencirc.14004e08
Trapminesuspicious.low.ml.score
TrellixENSArtemis!C8B4FB2984A4
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9Z
VBA32TScope.Trojan.MSIL
VIPREGen:Variant.Ser.Lazy.5885
VaristW32/MSIL_Kryptik.KMR.gen!Eldorado
ViRobotTrojan.Win.Z.Kryptik.809728
VirITTrojan.Win32.MSIL_Heur.A
XcitiumMalware@#9kpll66sxqni
YandexTrojan.Kryptik!YOv9fXv4xik
ZillyaTrojan.Kryptik.Win32.4574906
alibabacloudTrojan:Win/Injector.VVP
huorongTrojanDropper/MSIL.Agent.hv

DNS requests

danielballesterosdominper.con-ip.com

Process list

NameCommand line
8545fedaeb113fdb4000b3f6a8d0f0f4694f9198203086a7d1230385a5180f78.exe
aspnet_compiler.exe
Qxhmhuy.exe
aspnet_compiler.exe