855f8d8748a0658e591d712268ed8bc4b2fe28cb6b621a561fc1fbdeb4d1ea44

Classification: Malicious

855f8d8748a0658e591d712268ed8bc4b2fe28cb6b621a561fc1fbdeb4d1ea44 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.

Detection summary

  • 25 antivirus detections
  • 1 IDS alerts
  • 6 processes observed
  • 2 contacted hosts
  • 1 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-06-18 20:00:03 2026-09-02 22:45:03 malicious-activity

Tags

evasive infostealer

Sample information

Filenames
855f8d8748a0658e591d712268ed8bc4b2fe28cb6b621a561fc1fbdeb4d1ea44, 855f8.Trojan.exe
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
449536 bytes
MD5
31552649278b061edf588dab96c93db4
SHA-1
e5794fa6daf3f8ec497955285a1417ab8962cc0b
SHA-256
855f8d8748a0658e591d712268ed8bc4b2fe28cb6b621a561fc1fbdeb4d1ea44
First indexed
2024-06-18 19:55:07
Last updated
2026-09-02 22:45:03

Antivirus detections

EngineDetection
APEXMalicious
BitDefenderThetaGen:NN.ZexaF.36806.BqW@a0Qeiqp
BkavW32.AIDetectMalware
ClamAVWin.Keylogger.Lazy-10031941-0
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
CynetMalicious (score: 100)
Elasticmalicious (high confidence)
FireEyeGeneric.mg.31552649278b061e
GoogleDetected
IkarusTrojan.Win32.Krypt
KasperskyVHO:Trojan-PSW.Win32.Stealerc.gen
Kingsoftmalware.kb.a.986
LionicVirus.Generic.AI.1!c
MaxSecureTrojan.Malware.300983.susgen
McAfeeDReal Protect-LS!31552649278B
Paloaltogeneric.ml
Rising[email protected] (RDML:6Z3hgJ7+sBEBQdv98+Ijlg)
SangforTrojan.Win32.Save.a
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.gc
SophosML/PE-A
SymantecML.Attribute.HighConfidence
Trapminemalicious.high.ml.score
ZoneAlarmVHO:Trojan-PSW.Win32.Stealerc.gen

Network contacts

149.154.167.99 162.55.53.18

DNS requests

t.me

Process list

NameCommand line
855f8.Trojan.exe
RegAsm.exe
cmd.exe/c timeout /t 10 & del /f /q "%WINDIR%\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe" & rd /s /q "%ALLUSERSPROFILE%\DGDHJEGIEBFH" & exit
timeout.exetimeout /t 10
WerFault.exe-u -p 3880 -s 412
WerFault.exe-pss -s 440 -p 3880 -ip 3880