866793fb3e5da0b352d26f37db6deaa73b598019a29c0434da5a805c12fda095
Classification: Malicious
866793fb3e5da0b352d26f37db6deaa73b598019a29c0434da5a805c12fda095 is a malicious file sample. Reported by 3 threat sources, last seen 2026-09-03.
Detection summary
- 74 antivirus detections (37% detection ratio)
- 0 IDS alerts
- 2 processes observed
- 1 contacted hosts
- 14 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2023-11-03 21:00:05 |
2026-09-03 00:45:08 |
malicious-activity
|
|
| Spyware |
VM-Ray |
2023-11-03 21:22:47 |
2023-11-03 23:24:06 |
|
|
| Injector |
VM-Ray |
2023-11-03 21:22:47 |
2023-11-03 23:24:06 |
|
|
| Generic.Malware |
MalwareBazaar Abuse.ch |
2023-11-03 19:13:38 |
2023-11-03 19:13:38 |
malicious-activity
|
|
Sample information
- Filenames
- 866793fb3e5da0b352d26f37db6deaa73b598019a29c0434da5a805c12fda095, 866793fb3e5da0b352d26f37db6deaa73b598019a29c0434da5a805c12fda095.exe, 86679.Trojan.exe, SecuriteInfo.com.Win32.PWSX-gen.9403.13485
- File type
- application/x-dosexec
- Size
- 629760 bytes
- MD5
280b7fc7691f4ef2ab7e4fd6a0ed9c62
- SHA-1
d34061308542ffd1a0940dcbdca8fdf54aaa3b85
- SHA-256
866793fb3e5da0b352d26f37db6deaa73b598019a29c0434da5a805c12fda095
- First indexed
- 2023-11-03 20:18:53
- Last updated
- 2026-09-03 00:45:08
Antivirus detections
| Engine | Detection |
| Lionic | Trojan.Win32.Noon.l!c |
| Skyhigh | BehavesLike.Win32.Generic.jc |
| Sangfor | Suspicious.Win32.Save.a |
| CrowdStrike | win/malicious_confidence_100% (W) |
| K7GW | Trojan ( 005ad43d1 ) |
| K7AntiVirus | Trojan ( 005ad43d1 ) |
| VirIT | Trojan.Win32.MSIL_Heur.A |
| Symantec | Scr.Malcode!gdn33 |
| Elastic | malicious (high confidence) |
| Cynet | Malicious (score: 100) |
| APEX | Malicious |
| Kaspersky | UDS:Trojan-Spy.MSIL.Noon.gen |
| Rising | Malware.Obfus/[email protected] (RDM.MSIL2:33qPG2OvUaeCn2/ASP8FKQ) |
| Sophos | Troj/Krypt-ABH |
| Kingsoft | malware.kb.c.800 |
| ZoneAlarm | UDS:Trojan-Spy.MSIL.Noon.gen |
| Microsoft | Trojan:MSIL/Spynoon.AAUT!MTB |
| Google | Detected |
| McAfee | Artemis!280B7FC7691F |
| DeepInstinct | MALICIOUS |
| Cylance | unsafe |
| TrendMicro-HouseCall | TROJ_GEN.F0D1C00K323 |
| SentinelOne | Static AI - Malicious PE |
| MaxSecure | Trojan.Malware.300983.susgen |
| Fortinet | MSIL/GenKryptik.GLXZ!tr |
| AVG | Win32:PWSX-gen [Trj] |
| Avast | Win32:PWSX-gen [Trj] |
| ALYac | Trojan.GenericKDZ.104045 |
| AVG | Win32:MalwareX-gen [Pws] |
| AhnLab-V3 | Trojan/Win.SpyNoon.C5537141 |
| Alibaba | TrojanPSW:MSIL/AgentTesla.78441629 |
| Arcabit | Trojan.Generic.D1966D |
| Avast | Win32:MalwareX-gen [Pws] |
| Avira | HEUR/AGEN.1371067 |
| BitDefender | Trojan.GenericKDZ.104045 |
| CAT-QuickHeal | Trojan.Ghanarava.1730763426ed9c62 |
| CTX | exe.trojan.msil |
| Cylance | Unsafe |
| DrWeb | Trojan.Inject4.59820 |
| ESET-NOD32 | a variant of MSIL/Kryptik.AKAY |
| Emsisoft | Trojan.GenericKDZ.104045 (B) |
| F-Secure | Heuristic.HEUR/AGEN.1371067 |
| GData | Trojan.GenericKDZ.104045 |
| Ikarus | Trojan.MSIL.SpyNoon |
| Jiangmin | Trojan.PSW.MSIL.eqww |
| K7AntiVirus | Trojan ( 005b85261 ) |
| K7GW | Trojan ( 005b85261 ) |
| Kaspersky | HEUR:Trojan-PSW.MSIL.Stealer.gen |
| Lionic | Trojan.Win32.AgentTesla.i!c |
| Malwarebytes | Generic.Malware.gen.DDS |
| MaxSecure | Trojan.Malware.74396735.susgen |
| McAfeeD | ti!866793FB3E5D |
| MicroWorld-eScan | Trojan.GenericKDZ.104045 |
| Microsoft | Trojan:MSIL/AgentTesla.ASFM!MTB |
| NANO-Antivirus | Trojan.Win32.Stealer.kdctoq |
| Paloalto | generic.ml |
| Panda | Trj/Chgt.AD |
| Rising | Malware.Obfus/[email protected] (RDM.MSIL2:33qPG2OvUaeCn2/ASP8FKQ) |
| Symantec | MSIL.Packed.43 |
| Tencent | Malware.Win32.Gencirc.10bf9de6 |
| TrellixENS | Artemis!280B7FC7691F |
| TrendMicro | TROJ_GEN.R011C0DKA23 |
| TrendMicro-HouseCall | Trojan.Win32.VSX.PE04C9n |
| VBA32 | TScope.Trojan.MSIL |
| VIPRE | Trojan.GenericKDZ.104045 |
| Varist | W32/MSIL_Troj.CXU.gen!Eldorado |
| VirIT | Trojan.Win32.GenusT.DUXM |
| Webroot | W32.Malware.gen |
| Yandex | Trojan.Igent.b09eVr.1 |
| Zillya | Trojan.Kryptik.Win32.4357853 |
| ZoneAlarm | Troj/Krypt-ABH |
| Zoner | Trojan.Win32.164898 |
| alibabacloud | Trojan[spy]:MSIL/AgentTesla.AB!U3DGW |
| huorong | TrojanSpy/MSIL.Noon.d |
Process list
| Name | Command line |
| 86679.Trojan.exe | |
| RegSvcs.exe | |