861560fab6adef6b87a9ca272f91f8979bc28e85f120a390dadad92bccf77996

Classification: Malicious

861560fab6adef6b87a9ca272f91f8979bc28e85f120a390dadad92bccf77996 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.

Detection summary

  • 26 antivirus detections (37% detection ratio)
  • 3 IDS alerts
  • 2 processes observed
  • 2 contacted hosts
  • 1 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2023-10-30 10:00:04 2026-09-02 23:45:05 malicious-activity

Tags

rat

Sample information

Filenames
861560fab6adef6b87a9ca272f91f8979bc28e85f120a390dadad92bccf77996, Hesaphareketi-01.exe
File type
PE32 executable (GUI) Intel 80386 Mono/.Net assemb ...
Size
527360 bytes
MD5
bddc2a8284bfefe392c2552b25f3e0e8
SHA-1
8ee6a96a7bdde302d92a3ae7d8ccec53c8523745
SHA-256
861560fab6adef6b87a9ca272f91f8979bc28e85f120a390dadad92bccf77996
First indexed
2023-10-30 09:42:28
Last updated
2026-09-02 23:45:05

Antivirus detections

EngineDetection
FireEyeGen:Variant.Ser.Strictor.1832
MalwarebytesMalware.AI.3412114063
VIPREGen:Variant.Ser.Strictor.1832
SangforSuspicious.Win32.Save.a
BitDefenderGen:Variant.Ser.Strictor.1832
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaGen:NN.ZemsilF.36792.Gm0@aSTDdlo
VirITTrojan.Win32.MSIL_Heur.A
SymantecScr.Malcode!gdn34
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan-Spy.MSIL.SnakeLogger.gen
MicroWorld-eScanGen:Variant.Ser.Strictor.1832
EmsisoftGen:Variant.Ser.Strictor.1832 (B)
SophosTroj/Krypt-ABH
MAXmalware (ai score=84)
ArcabitTrojan.Ser.Strictor.D728
ZoneAlarmUDS:Trojan-Spy.MSIL.SnakeLogger.gen
GDataGen:Variant.Ser.Strictor.1832
GoogleDetected
ALYacGen:Variant.Ser.Strictor.1832
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.ATU!tr
Cybereasonmalicious.a7bdde
DeepInstinctMALICIOUS

Network contacts

158.101.44.242 132.226.247.73

DNS requests

checkip.dyndns.org

Process list

NameCommand line
Hesaphareketi-01.exe
Hesaphareketi-01.exe