85c07dda9a547eda57d888f630094f874f0c7f70503d4a2ae231660a1bb0f099
Classification: Malicious
85c07dda9a547eda57d888f630094f874f0c7f70503d4a2ae231660a1bb0f099 is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02.
Detection summary
- 69 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 1 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2026-09-02 23:45:08 |
2026-09-02 23:45:08 |
malicious-activity
|
|
| Loki |
MalwareBazaar Abuse.ch |
2024-09-25 07:55:18 |
2024-09-25 07:55:18 |
malicious-activity
|
|
Sample information
- Filenames
- 85c07dda9a547eda57d888f630094f874f0c7f70503d4a2ae231660a1bb0f099, gunzipped.exe
- File type
- application/x-dosexec
- MD5
5c3fc2b8054e81f236370d33a8f97459
- SHA-1
810e93e428121457a41309456f56fd86f55b6d4b
- SHA-256
85c07dda9a547eda57d888f630094f874f0c7f70503d4a2ae231660a1bb0f099
- First indexed
- 2024-09-25 08:20:58
- Last updated
- 2026-09-02 23:45:08
Antivirus detections
| Engine | Detection |
| APEX | Malicious |
| AVG | PWSX-gen [Trj] |
| Alibaba | Trojan:MSIL/GenKryptik.3255658f |
| Avast | PWSX-gen [Trj] |
| Bkav | W32.AIDetectMalware.CS |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| ESET-NOD32 | a variant of MSIL/GenKryptik.GXIZ |
| Elastic | malicious (high confidence) |
| Fortinet | MSIL/Kryptik.XSWP!tr |
| Google | Detected |
| Ikarus | Win32.Outbreak |
| K7AntiVirus | Trojan ( 005b7e031 ) |
| K7GW | Trojan ( 005b7e031 ) |
| Kingsoft | Win32.Hack.Undef.a |
| Malwarebytes | Trojan.MalPack |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfeeD | ti!85C07DDA9A54 |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| Paloalto | generic.ml |
| SentinelOne | Static AI - Malicious PE |
| Symantec | Scr.Malcode!gdn34 |
| Trapmine | malicious.moderate.ml.score |
| Varist | W32/MSIL_Kryptik.KQX.gen!Eldorado |
| VirIT | Trojan.Win32.MSIL_Heur.A |
| ALYac | Trojan.Agent.GMTO |
| AVG | Win32:MalwareX-gen [Pws] |
| AhnLab-V3 | Malware/Win.Generic.C5674557 |
| Arcabit | Trojan.Agent.GMTO |
| Avast | Win32:MalwareX-gen [Pws] |
| Avira | TR/AD.LokiBot.dvyiq |
| BitDefender | Trojan.Agent.GMTO |
| CAT-QuickHeal | Backdoor.MsilFC.S34548211 |
| CTX | exe.trojan.msil |
| ClamAV | Win.Packed.Filerepmalware-10036403-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| DrWeb | Trojan.Packed2.50433 |
| ESET-NOD32 | MSIL/Kryptik.AMJL trojan |
| Emsisoft | Trojan.Agent.GMTO (B) |
| F-Secure | Trojan.TR/AD.LokiBot.dvyiq |
| Fortinet | MSIL/Formbook.A!tr |
| GData | Trojan.Agent.GMTO |
| Ikarus | Trojan.MSIL.Inject |
| Kaspersky | HEUR:Backdoor.MSIL.Remcos.gen |
| Lionic | Trojan.Win32.Remcos.m!c |
| MaxSecure | Trojan.Malware.73696032.susgen |
| MicroWorld-eScan | Trojan.Agent.GMTO |
| Microsoft | Trojan:MSIL/FormBook.AFB!MTB |
| NANO-Antivirus | Trojan.Win32.Packed2.ksgscb |
| Panda | Trj/Chgt.AD |
| Rising | Malware.Obfus/[email protected] (RDM.MSIL2:rsGoDlrppPnTIuLEMD47YQ) |
| Sangfor | Infostealer.Msil.Kryptik.Vgkz |
| Skyhigh | BehavesLike.Win32.Generic.hc |
| Sophos | Troj/Krypt-ABH |
| Tencent | Trojan.Msil.Kryptik.16001427 |
| TrellixENS | Artemis!5C3FC2B8054E |
| TrendMicro-HouseCall | Trojan.Win32.VSX.PE04C9t |
| VBA32 | TScope.Trojan.MSIL |
| VIPRE | Trojan.Agent.GMTO |
| Varist | W32/MSIL_Agent.ISV.gen!Eldorado |
| Webroot | W32.Infostealer.Gen |
| Xcitium | Malware@#3jg4g2ublrwku |
| Yandex | Trojan.Igent.b23ytr.12 |
| Zillya | Trojan.Kryptik.Win32.4896056 |
| ZoneAlarm | Troj/Krypt-AQM |
| Zoner | Trojan.Win32.176748 |
| alibabacloud | Backdoor:MSIL/Remcos.gyf |
| huorong | TrojanSpy/MSIL.Stealer.ajw!crit |