866c6f0599d2375ac1d50a165f5735c74b980bc6bdea3f023522f897999f6770
Classification: Malicious
866c6f0599d2375ac1d50a165f5735c74b980bc6bdea3f023522f897999f6770 is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-03.
Detection summary
- 30 antivirus detections
- 1 IDS alerts
- 5 processes observed
- 1 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2024-07-03 07:15:03 |
2026-09-03 00:45:08 |
malicious-activity
|
|
| Loki |
MalwareBazaar Abuse.ch |
2024-07-03 07:05:15 |
2024-07-03 07:05:15 |
malicious-activity
|
|
Sample information
- Filenames
- 866c6f0599d2375ac1d50a165f5735c74b980bc6bdea3f023522f897999f6770, Obrazac za povrat novca 202400097004892.cmd.e.exe
- File type
- PE32 executable (GUI) Intel 80386 Mono/.Net assemb ...
- Size
- 836616 bytes
- MD5
cae1057e3be1c54b180e5d099a700b74
- SHA-1
ef526b7d49e2f5fb3fe318df5594a76962e5207f
- SHA-256
866c6f0599d2375ac1d50a165f5735c74b980bc6bdea3f023522f897999f6770
- First indexed
- 2024-07-03 07:09:39
- Last updated
- 2026-09-03 00:45:08
Antivirus detections
| Engine | Detection |
| APEX | Malicious |
| AVG | MalwareX-gen [Trj] |
| Avast | MalwareX-gen [Trj] |
| BitDefenderTheta | Gen:NN.ZemsilF.36808.Zm2@aG8yvTk |
| Bkav | W32.AIDetectMalware.CS |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| Elastic | malicious (high confidence) |
| FireEye | Generic.mg.cae1057e3be1c54b |
| Fortinet | MSIL/Kryptik.AJAP!tr |
| Google | Detected |
| Ikarus | Trojan.MSIL.Agent |
| K7AntiVirus | Riskware ( 00584baa1 ) |
| K7GW | Riskware ( 00584baa1 ) |
| Kaspersky | UDS:Backdoor.MSIL.Androm.gen |
| Kingsoft | malware.kb.c.994 |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfeeD | ti!866C6F0599D2 |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| Paloalto | generic.ml |
| Rising | Malware.Obfus/[email protected] (RDM.MSIL2:x/JZEbXzfTFMApTJOMIc3g) |
| Sangfor | Trojan.Win32.Save.MSIL_Inject |
| SentinelOne | Static AI - Malicious PE |
| Sophos | Troj/MSIL-SSP |
| Symantec | Scr.Malcode!gdn33 |
| Trapmine | malicious.high.ml.score |
| Varist | W32/MSIL_Kryptik.KUK.gen!Eldorado |
| VirIT | Trojan.Win32.MSIL_Heur.A |
| ZoneAlarm | UDS:Backdoor.MSIL.Androm.gen |
Process list
| Name | Command line |
| Obrazaczapovratnovca202400097004892.cmd.e.exe | |
| powershell.exe | Add-MpPreference -ExclusionPath "C:\Obrazaczapovratnovca202400097004892.cmd.e.exe" |
| RegSvcs.exe | |
| RegSvcs.exe | |
| RegSvcs.exe | |