861e618c65614c985797476d8a4135a79b8a2fe24889b2addc058d789b281001

Classification: Malicious

861e618c65614c985797476d8a4135a79b8a2fe24889b2addc058d789b281001 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.

Detection summary

  • 39 antivirus detections
  • 0 IDS alerts
  • 4 processes observed
  • 0 contacted hosts
  • 0 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2024-10-16 16:30:07 2026-09-02 23:45:05 malicious-activity

Tags

evasive

Sample information

Filenames
861e618c65614c985797476d8a4135a79b8a2fe24889b2addc058d789b281001, file
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
1852928 bytes
MD5
991eb7324357b82cc07b7132022b9d1e
SHA-1
ac67b27fa5b1210b5fc70ff7e00cc372c3169a68
SHA-256
861e618c65614c985797476d8a4135a79b8a2fe24889b2addc058d789b281001
First indexed
2024-10-16 16:15:14
Last updated
2026-09-02 23:45:05

Antivirus detections

EngineDetection
ALYacTrojan.GenericKDZ.108120
APEXMalicious
AVGWin32:TrojanX-gen [Trj]
AhnLab-V3Trojan/Win.Generic.R668215
ArcabitTrojan.Generic.D1A658
AvastWin32:TrojanX-gen [Trj]
AviraTR/Crypt.TPM.Gen
BitDefenderTrojan.GenericKDZ.108120
BkavW32.AIDetectMalware
CTXexe.trojan.generickdz
CrowdStrikewin/malicious_confidence_100% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
ESET-NOD32a variant of Win32/Packed.Themida.HZB
Elasticmalicious (high confidence)
EmsisoftTrojan.GenericKDZ.108120 (B)
F-SecureTrojan.TR/Crypt.TPM.Gen
FireEyeGeneric.mg.991eb7324357b82c
FortinetW32/Themida.HZB!tr
GDataWin32.Trojan-Stealer.StealC.C
GoogleDetected
GridinsoftTrojan.Heur!.03A120A1
KasperskyHEUR:Trojan.Win32.Generic
Kingsoftmalware.kb.b.990
MalwarebytesSpyware.PasswordStealer
MaxSecureTrojan.Malware.300983.susgen
McAfeeDReal Protect-LS!991EB7324357
MicroWorld-eScanTrojan.GenericKDZ.108120
MicrosoftTrojan:Win32/Amadey.HNS!MTB
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.tc
SophosMal/Stealc-A
SymantecML.Attribute.HighConfidence
Trapminemalicious.high.ml.score
VIPRETrojan.GenericKDZ.108120
VaristW32/Themida.CN.gen!Eldorado
ZoneAlarmVHO:Trojan.Win32.Convagent.gen
ZonerProbably Heur.ExeHeaderL

Process list

NameCommand line
file.exe
WerFault.exe-u -p 3592 -s 596
WerFault.exe-u -p 3592 -s 596
WerFault.exe-pss -s 464 -p 3592 -ip 3592