863c177542f93d6e42ba2dc7633cec75da9515c39ed13915f63e9361f5cf7a6b

Classification: Malicious

863c177542f93d6e42ba2dc7633cec75da9515c39ed13915f63e9361f5cf7a6b is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-03.

Detection summary

  • 62 antivirus detections
  • 5 IDS alerts
  • 0 processes observed
  • 4 contacted hosts
  • 8 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2026-09-03 00:45:09 2026-09-03 00:45:09 malicious-activity
Luca Stealer ThreatFox Abuse.ch 2024-09-24 06:55:49 2024-09-26 06:20:19
LummaStealer MalwareBazaar Abuse.ch 2024-09-24 05:29:26 2024-09-24 05:29:26 malicious-activity

Tags

win.luca_stealer malicious

Sample information

Filenames
863c177542f93d6e42ba2dc7633cec75da9515c39ed13915f63e9361f5cf7a6b, 94c5abd0eccd77846b4e0f641906bb19.exe
File type
application/x-dosexec
MD5
94c5abd0eccd77846b4e0f641906bb19
SHA-1
3fb0119c89952f61aee14abbe693a293ee916439
SHA-256
863c177542f93d6e42ba2dc7633cec75da9515c39ed13915f63e9361f5cf7a6b
First indexed
2024-09-24 07:17:19
Last updated
2026-09-03 00:45:09

Antivirus detections

EngineDetection
ALYacTrojan.GenericKD.74098991
APEXMalicious
AVGWin32:PWSX-gen [Trj]
AhnLab-V3Trojan/Win.Generic.C5669147
AlibabaTrojanPSW:MSIL/Lumma.fea26fcb
ArcabitTrojan.Generic.D46AA92F
AvastWin32:PWSX-gen [Trj]
AviraTR/AD.Nekark.oizny
BitDefenderTrojan.GenericKD.74098991
BkavW32.AIDetectMalware.CS
CTXexe.trojan.msil
ClamAVWin.Packed.Pwsx-10035189-0
CrowdStrikewin/malicious_confidence_70% (D)
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebTrojan.PWS.Lumma.424
ESET-NOD32a variant of MSIL/GenKryptik.HBHS
Elasticmalicious (high confidence)
EmsisoftTrojan.GenericKD.74098991 (B)
F-SecureTrojan.TR/AD.Nekark.oizny
FireEyeGeneric.mg.94c5abd0eccd7784
FortinetMSIL/GenKryptik.HBNC!tr
GDataTrojan.GenericKD.74098991
GoogleDetected
GridinsoftSpy.Win32.Gen.tr
IkarusTrojan.MSIL.Krypt
JiangminTrojan.PSW.MSIL.eydv
K7AntiVirusTrojan ( 005ba0eb1 )
K7GWTrojan ( 005ba0eb1 )
KasperskyHEUR:Trojan-PSW.MSIL.Stealerc.gen
KingsoftMSIL.Trojan-PSW.Stealerc.gen
LionicTrojan.Win32.Lumma.1u!c
MalwarebytesTrojan.Crypt
MaxSecureTrojan.Malware.204074003.susgen
McAfeeTrojan-FWBQ!94C5ABD0ECCD
McAfeeDti!863C177542F9
MicroWorld-eScanTrojan.GenericKD.74098991
MicrosoftTrojan:MSIL/Lumma.MBXT!MTB
NANO-AntivirusTrojan.Win32.Nekark.krpmgo
Paloaltogeneric.ml
PandaTrj/Chgt.AD
RisingMalware.Obfus/[email protected] (RDM.MSIL2:9pOrkwsxDYvGBWBQ9qifiA)
SangforInfostealer.Msil.Kryptik.Vorm
SentinelOneStatic AI - Malicious PE
SkyhighTrojan-FWBQ!94C5ABD0ECCD
SophosMal/MSIL-WA
SymantecML.Attribute.HighConfidence
TencentTrojan.Msil.Kryptik.16001398
Trapminesuspicious.low.ml.score
TrendMicroTrojanSpy.Win32.LUMMASTEALER.YXEIKZ
TrendMicro-HouseCallTrojanSpy.Win32.LUMMASTEALER.YXEIKZ
VBA32TScope.Trojan.MSIL
VIPRETrojan.GenericKD.74098991
VaristW32/MSIL_Agent.ILW.gen!Eldorado
ViRobotTrojan.Win.Z.Genkryptik.328744
VirITTrojan.Win32.GenusT.DZFZ
WebrootW32.Trojan.Gen
XcitiumMalware@#3fwfi24l48yv7
ZillyaTrojan.GenKryptik.Win32.953813
ZoneAlarmHEUR:Trojan-PSW.MSIL.Stealerc.gen
alibabacloudTrojan[stealer]:MSIL/Lumma.MKFK3DGW
huorongTrojan/MSIL.Agent.li

Network contacts

52.27.79.221 54.146.6.253 3.222.192.211 44.244.22.128

DNS requests

basedsymsotp.shop charistmatwio.shop commisionipwn.shop complainnykso.shop grassemenwji.shop ignoracndwko.shop preachstrwnwjw.shop stitchmiscpaew.shop