vshost.exe
Classification: Malicious
vshost.exe is a malicious file sample. Linked to Asyncrat malware. Reported by 1 threat source, last seen 2026-09-03. Detected by 19 antivirus engines.
Detection summary
- 19 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: ASYNCRAT (S1087)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Asyncrat | Triage | 2026-09-03 00:37:57 | 2026-09-03 00:37:57 | malicious-activity | S1087 AsyncRAT |
Tags
asyncrat discovery rat suricataSample information
- Filenames
- vshost.exe
- SHA-256
8bf4f661fffcff8a99db9be11b142911bdbdb43a4531e7797a8305b4eb89dc22- First indexed
- 2026-09-03 00:37:57
- Last updated
- 2026-09-03 00:37:57
Antivirus detections
| Engine | Detection |
|---|---|
| APEX | Malicious |
| Avira | TR/Dropper.Gen |
| Bkav | W32.Malware.C6D308BE |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.PackedNET.215 |
| Elastic | malicious (high confidence) |
| F-Secure | Trojan.TR/Dropper.Gen |
| Kingsoft | malware.kb.c.1000 |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfeeD | Real Protect-LS!A154A0F773E5 |
| Microsoft | Trojan:Win32/Wacatac.C!ml |
| Sangfor | Suspicious.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Sophos | ML/PE-A |
| Symantec | ML.Attribute.HighConfidence |
| Trapmine | suspicious.low.ml.score |
| huorong | HEUR:VirTool/MSIL.Obfuscator.gen!BA |