86cc6304f5610bd7836b6706c2fe5d5c1fd88ad5de23927e41a1848dddf744e1
Classification: Malicious
86cc6304f5610bd7836b6706c2fe5d5c1fd88ad5de23927e41a1848dddf744e1 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-03.
Detection summary
- 57 antivirus detections
- 2 IDS alerts
- 5 processes observed
- 2 contacted hosts
- 1 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2025-07-27 13:30:05 |
2026-09-03 00:45:03 |
malicious-activity
|
|
Sample information
- Filenames
- 86cc6304f5610bd7836b6706c2fe5d5c1fd88ad5de23927e41a1848dddf744e1
- File type
- PE32 executable (GUI) Intel 80386 Mono/.Net assemb ...
- Size
- 733696 bytes
- MD5
84cde485c63b081e3c753525de5ca7c7
- SHA-1
e75196d8eca2f65d2912618938c2211d31da4c8f
- SHA-256
86cc6304f5610bd7836b6706c2fe5d5c1fd88ad5de23927e41a1848dddf744e1
- First indexed
- 2025-07-27 13:16:10
- Last updated
- 2026-09-03 00:45:04
Antivirus detections
| Engine | Detection |
| ALYac | Trojan.GenericKDZ.105698 |
| APEX | Malicious |
| AVG | Win32:MalwareX-gen [Pws] |
| AhnLab-V3 | Trojan/Win.Generic.C5603797 |
| Alibaba | Trojan:MSIL/Formbook.d1b367b4 |
| Arcabit | Trojan.Generic.D19CE2 |
| Avast | Win32:MalwareX-gen [Pws] |
| Avira | TR/AD.Nekark.hmlda |
| BitDefender | Trojan.GenericKDZ.105698 |
| Bkav | W32.AIDetectMalware.CS |
| CAT-QuickHeal | Trojan.MsilFC.S33348356 |
| CTX | exe.trojan.msil |
| ClamAV | Win.Packed.Taskun-10024493-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.PackedNET.2755 |
| ESET-NOD32 | a variant of MSIL/Kryptik.ALFL |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.GenericKDZ.105698 (B) |
| F-Secure | Trojan.TR/AD.Nekark.hmlda |
| Fortinet | MSIL/Remcos.GWMJE!tr |
| GData | Trojan.GenericKDZ.105698 |
| Google | Detected |
| Ikarus | Trojan.MSIL.Inject |
| K7AntiVirus | Trojan ( 700000201 ) |
| K7GW | Trojan ( 700000201 ) |
| Kaspersky | HEUR:Trojan.MSIL.Taskun.gen |
| Kingsoft | MSIL.Trojan.Taskun.gen |
| Lionic | Trojan.Win32.Taskun.4!c |
| Malwarebytes | Malware.AI.4033545436 |
| MaxSecure | Trojan.Malware.74644571.susgen |
| McAfeeD | ti!86CC6304F561 |
| MicroWorld-eScan | Trojan.GenericKDZ.105698 |
| Microsoft | Trojan:MSIL/Formbook.RDZ!MTB |
| Paloalto | generic.ml |
| Panda | Trj/Chgt.AD |
| Rising | Malware.Obfus/[email protected] (RDM.MSIL2:X9N4u+rF+DGx2cHCC5Po2g) |
| Sangfor | Suspicious.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Generic.bc |
| Sophos | Troj/Krypt-ABH |
| Symantec | Scr.Malcode!gdn33 |
| Tencent | Malware.Win32.Gencirc.11be8b9d |
| TrellixENS | AgentTesla!84CDE485C63B |
| TrendMicro-HouseCall | Trojan.Win32.VSX.PE04C9h |
| VBA32 | TrojanLoader.MSIL.DaVinci.Heur |
| VIPRE | Trojan.GenericKDZ.105698 |
| Varist | W32/MSIL_Troj.DDH.gen!Eldorado |
| VirIT | Trojan.Win32.GenusT.DVND |
| Webroot | W32.Malware.gen |
| Xcitium | Malware@#335bhx00zupi0 |
| Yandex | Trojan.Taskun!vu/8TeMQW8c |
| Zillya | Trojan.Kryptik.Win32.4690374 |
| ZoneAlarm | Troj/Krypt-ABH |
| alibabacloud | Trojan:MSIL/Formbook.RDZ!MTB |
| huorong | TrojanSpy/MSIL.AgentTesla.mq |
Process list
| Name | Command line |
| 86cc6304f5610bd7836b6706c2fe5d5c1fd88ad5de23927e41a1848dddf744e1.exe | |
| powershell.exe | Add-MpPreference -ExclusionPath "C:\86cc6304f5610bd7836b6706c2fe5d5c1fd88ad5de23927e41a1848dddf744e1.exe" |
| powershell.exe | Add-MpPreference -ExclusionPath "%APPDATA%\VTROzEh.exe" |
| schtasks.exe | /Create /TN "Updates\VTROzEh" /XML "%TEMP%\tmpF3CD.tmp" |
| RegSvcs.exe | |