94ff87c81a50d25e9acf7c46ec463f0aff88483eb4f63339cd833595d8b76cef
Classification: Malicious
94ff87c81a50d25e9acf7c46ec463f0aff88483eb4f63339cd833595d8b76cef is a malicious file sample. Linked to Fakespy malware. Detected by 34 antivirus engines.
Detection summary
- 34 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: FAKESPY (S0509)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Fakespy | Triage | 2026-05-01 08:08:11 | 2026-05-01 11:40:07 | malicious-activity | S0509 FakeSpy |
Tags
fakespy android banker collection credential_access defense_evasion discovery impact infostealer persistence spywareSample information
- Filenames
- 94ff87c81a50d25e9acf7c46ec463f0aff88483eb4f63339cd833595d8b76cef
- SHA-256
94ff87c81a50d25e9acf7c46ec463f0aff88483eb4f63339cd833595d8b76cef- First indexed
- 2026-05-01 08:08:11
- Last updated
- 2026-05-01 11:55:19
Antivirus detections
| Engine | Detection |
|---|---|
| AVG | Android:BankBot-CZ [Bank] |
| AhnLab-V3 | Trojan/Android.PhishingApp.600143 |
| Alibaba | TrojanBanker:Android/Bajaspy.dc11c6cf |
| Avast | Android:BankBot-CZ [Bank] |
| Avast-Mobile | Android:Evo-gen [Trj] |
| Avira | ANDROID/Spy.FFM.Gen |
| BitDefenderFalx | Android.Trojan.FakeBank.BR |
| CAT-QuickHeal | Android.Agent.GEN24679 |
| CTX | apk.trojan.bajaspy |
| Cynet | Malicious (score: 99) |
| DrWeb | Android.BankBot.372.origin |
| ESET-NOD32 | Android/Spy.Agent.ANX trojan |
| F-Secure | Malware.ANDROID/Spy.FFM.Gen |
| Fortinet | Android/Fakespy.Z!tr |
| Detected | |
| Ikarus | Trojan.AndroidOS.FakeSpy |
| K7GW | Trojan ( 005574a31 ) |
| Kaspersky | HEUR:Trojan-Banker.AndroidOS.Bajaspy.a |
| Lionic | Trojan.AndroidOS.Bajaspy.C!c |
| NANO-Antivirus | Trojan.Android.BankBot.fdftdc |
| Rising | Spyware.BajaSpy/Android!8.18770 (CLOUD) |
| Skyhigh | Artemis!Trojan |
| Sophos | Andr/Xgen-TK |
| Symantec | Trojan.Gen.2 |
| SymantecMobileInsight | Other:Android.Reputation.1 |
| Tencent | a.privacy.FakeSpy |
| TrellixENS | Artemis!0E109E2654E3 |
| TrendMicro | ANDROIDOS_FAKEBANKER.HRX |
| TrendMicro-HouseCall | ANDROIDOS_FAKEBANKER.HRX |
| Trustlook | Android.Malware.Trojan |
| Varist | ABTrojan.KUNZ- |
| Xcitium | Malware@#3ol1dr5chrycx |
| ZoneAlarm | Andr/Xgen-TK |
| alibabacloud | Trojan[stealer]:Android/Bajaspy.a |