86a38c7be7f024035b513355c83265e1e210a2c82329839538a734ad75275d7b

Classification: Malicious

86a38c7be7f024035b513355c83265e1e210a2c82329839538a734ad75275d7b is a malicious file sample. Linked to Remcos malware. Detected by 87 antivirus engines.

Detection summary

  • 87 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 1 DNS requests

MITRE ATT&CK associations

Malware families: REMCOS (S0332)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2026-09-03 00:45:05 2026-09-03 00:45:05 malicious-activity
Generic Malware Cyber Threat Alliance 2024-10-31 10:07:29 2024-10-31 10:07:29
Remcos ThreatFox Abuse.ch 2024-08-26 17:43:13 2024-08-28 17:19:52 S0332 Remcos
Generic.Malware MalwareBazaar Abuse.ch 2024-08-26 15:38:38 2024-08-26 15:38:38 malicious-activity

Tags

win.remcos remcosrat remvio socmer infostealer

Sample information

Filenames
86a38c7be7f024035b513355c83265e1e210a2c82329839538a734ad75275d7b, Signed Document..exe
File type
application/x-dosexec
MD5
b04baf73f6244754828f8583d110dd88
SHA-1
651c010d7d52be0dd2dad5f1408dbddf5a1e4e87
SHA-256
86a38c7be7f024035b513355c83265e1e210a2c82329839538a734ad75275d7b
First indexed
2024-08-26 17:19:04
Last updated
2026-09-03 00:45:05

Antivirus detections

EngineDetection
ALYacTrojan.Generic.36602264
AVGWin32:PWSX-gen [Trj]
AhnLab-V3Trojan/Win.Formbook.X2183
AlibabaTrojanSpy:MSIL/Kryptik.087e6889
Antiy-AVLTrojan[Spy]/MSIL.Noon
AvastWin32:PWSX-gen [Trj]
AviraTR/Kryptik.qjsvr
BitDefenderTrojan.Generic.36602264
BitDefenderThetaGen:NN.ZemsilF.36810.Ho0@a4rU@kni
BkavW32.AIDetectMalware.CS
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
DeepInstinctMALICIOUS
ESET-NOD32a variant of MSIL/Kryptik.ALZI
Elasticmalicious (high confidence)
EmsisoftTrojan.Generic.36602264 (B)
F-SecureTrojan.TR/Kryptik.qjsvr
FireEyeTrojan.Generic.36602264
FortinetMSIL/AgentTesla.D!tr
GDataTrojan.Generic.36602264
GoogleDetected
IkarusTrojan-Spy.AgentTesla
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
MAXmalware (ai score=81)
MaxSecureTrojan.Malware.300983.susgen
McAfeeDti!86A38C7BE7F0
MicroWorld-eScanTrojan.Generic.36602264
MicrosoftTrojan:Win32/Leonem
Paloaltogeneric.ml
PandaTrj/GdSda.A
SentinelOneStatic AI - Malicious PE
SophosML/PE-A
SymantecML.Attribute.HighConfidence
TrendMicroTROJ_GEN.R06CC0DGM24
TrendMicro-HouseCallTROJ_GEN.R06CC0DGM24
VIPRETrojan.Generic.36602264
YandexTrojan.Igent.b2EQnb.2
ZoneAlarmHEUR:Trojan-Spy.MSIL.Noon.gen
ALYacGen:Variant.Jalapeno.17239
AlibabaTrojanSpy:MSIL/Kryptik.932caa8f
ArcabitTrojan.Jalapeno.D4357
BitDefenderGen:Variant.Jalapeno.17239
BitDefenderThetaGen:NN.ZemsilF.36812.Ho0@a4rU@kni
Cybereasonmalicious.3f6244
EmsisoftGen:Variant.Jalapeno.17239 (B)
FireEyeGen:Variant.Jalapeno.17239
GDataGen:Variant.Jalapeno.17239
K7AntiVirusTrojan ( 005b82201 )
K7GWTrojan ( 005b82201 )
KingsoftMSIL.Trojan-Spy.Noon.gen
LionicTrojan.Win32.Noon.l!c
MalwarebytesGeneric.Malware/Suspicious
MaxSecureTrojan.Malware.73691310.susgen
McAfeeArtemis!B04BAF73F624
MicroWorld-eScanGen:Variant.Jalapeno.17239
RisingMalware.Obfus/[email protected] (RDM.MSIL2:vu5o9Jv+8JuXRfQXHqpnow)
SangforSpyware.Msil.Kryptik.Vkb3
SkyhighBehavesLike.Win32.Generic.vh
SophosMal/Generic-S
TencentMalware.Win32.Gencirc.14138cb9
TrendMicroBackdoor.Win32.REMCOS.YXEGXZ
TrendMicro-HouseCallBackdoor.Win32.REMCOS.YXEGXZ
VIPREGen:Variant.Jalapeno.17239
VaristW32/ABTrojan.SDEF-7353
ViRobotTrojan.Win.Z.Noon.2642944
ZillyaTrojan.Kryptik.Win32.4839656
alibabacloudTrojan[spy]:MSIL/Noon.gyf
ALYacTrojan.GenericKD.73935448
ArcabitTrojan.Generic.D4682A58
BitDefenderTrojan.GenericKD.73935448
EmsisoftTrojan.GenericKD.73935448 (B)
FireEyeTrojan.GenericKD.73935448
GDataTrojan.GenericKD.73935448
GridinsoftTrojan.Win32.Kryptik.sa
MalwarebytesMalware.AI.3573354194
MicroWorld-eScanTrojan.GenericKD.73935448
RisingSpyware.Noon!8.E7C9 (CLOUD)
SangforSpyware.Msil.Kryptik.Vo7u
SkyhighBehavesLike.Win32.AgentTesla.vh
SymantecTrojan Horse
VBA32TScope.Trojan.MSIL
VIPRETrojan.GenericKD.73935448
VirITTrojan.Win32.MSIL.HDQ
WebrootW32.Trojan.Gen
XcitiumMalware@#2ybc3bs0eirj3
alibabacloudTrojan[spy]:MSIL/Leonem.Gen
huorongTrojan/MSIL.Agent.mu

DNS requests

www.lig-gu.com