fbf05b8c17ae821b9d1df84962a186d0.exe
Classification: Malicious
fbf05b8c17ae821b9d1df84962a186d0.exe is a malicious file sample. Linked to Smoke Loader malware. Reported by 1 threat source, last seen 2021-10-26.
Detection summary
- 26 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SMOKE LOADER (S0226)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Smoke Loader | Abuse.ch | 2021-10-26 15:04:12 | 2021-10-26 15:04:12 | malicious-activity | S0226 Smoke Loader |
Sample information
- Filenames
- fbf05b8c17ae821b9d1df84962a186d0.exe
- File type
- application/x-dosexec
- MD5
fbf05b8c17ae821b9d1df84962a186d0- SHA-1
4faa7bc1a96382acaf56b1b679cb17f623f587c6- SHA-256
93929f6eebae9f8d20b1807b0d49bd983d51ebd5b223bcefb8cfb1350906cba8- First indexed
- 2021-10-26 16:15:11
- Last updated
- 2026-09-02 21:41:39
Antivirus detections
| Engine | Detection |
|---|---|
| Bkav | W32.AIDetect.malware1 |
| Elastic | malicious (high confidence) |
| FireEye | Generic.mg.fbf05b8c17ae821b |
| Cylance | Unsafe |
| Sangfor | Trojan.Win32.Save.a |
| K7GW | Hacktool ( 700007861 ) |
| Cybereason | malicious.1a9638 |
| Cyren | W32/Kryptik.FOQ.gen!Eldorado |
| Symantec | Packed.Generic.528 |
| APEX | Malicious |
| Paloalto | generic.ml |
| Kaspersky | VHO:Trojan-Ransom.Win32.Stop.gen |
| Avast | FileRepMalware |
| Sophos | ML/PE-A + Troj/Krypt-BO |
| McAfee-GW-Edition | BehavesLike.Win32.Generic.dh |
| SentinelOne | Static AI - Malicious PE |
| MaxSecure | Trojan.Malware.300983.susgen |
| Microsoft | Trojan:Win32/Sabsik.FL.B!ml |
| Cynet | Malicious (score: 100) |
| Acronis | suspicious |
| BitDefenderTheta | Gen:NN.ZexaF.34236.nu0@amL@NWaG |
| Rising | Malware.Heuristic!ET#89% (RDMK:cmRtazqLKU8Qn0N3iw6iwaOXKE8z) |
| Ikarus | Trojan.Win32.Crypt |
| eGambit | Unsafe.AI_Score_80% |
| AVG | FileRepMalware |
| CrowdStrike | win/malicious_confidence_100% (W) |