40367f496f45ba45b8545f90065b6940.exe
Classification: Malicious
40367f496f45ba45b8545f90065b6940.exe is a malicious file sample. Linked to Servhelper malware. Reported by 1 threat source, last seen 2021-04-12.
Detection summary
- 26 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SERVHELPER (S0382)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ServHelper | Abuse.ch | 2021-04-12 06:43:55 | 2021-04-12 06:43:55 | malicious-activity | S0382 ServHelper |
Sample information
- Filenames
- 40367f496f45ba45b8545f90065b6940.exe
- File type
- application/x-dosexec
- MD5
40367f496f45ba45b8545f90065b6940- SHA-1
1d7bd76d538e1c1859999b807c071d6f1b930597- SHA-256
9d1ca3a1dad26b6c0195ac41fe5fa6e5e03706496944383ca9156fa99e57dc8a- First indexed
- 2021-04-12 08:15:05
- Last updated
- 2026-04-17 02:42:11
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| Cynet | Malicious (score: 100) |
| McAfee | Artemis!40367F496F45 |
| Malwarebytes | Malware.AI.4239237678 |
| CrowdStrike | win/malicious_confidence_80% (W) |
| Alibaba | TrojanDropper:MSIL/GoCLR.1dbf05b5 |
| K7GW | Trojan ( 00578f671 ) |
| Symantec | Trojan.Gen.MBT |
| ESET-NOD32 | a variant of WinGo/GoCLR.A |
| ClamAV | Win.Malware.Bulz-9847817-0 |
| Kaspersky | Trojan-Dropper.MSIL.Agent.seskiq |
| APEX | Malicious |
| McAfee-GW-Edition | BehavesLike.Win64.Generic.vh |
| Sophos | ML/PE-A |
| Jiangmin | Trojan.Cobalt.ic |
| eGambit | Unsafe.AI_Score_100% |
| Kingsoft | Win32.Troj.Undef.(kcloud) |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| AegisLab | Trojan.Multi.Generic.4!c |
| GData | Win64.Trojan.Agent.DP801H |
| Cylance | Unsafe |
| Avast | Win64:Trojan-gen |
| Rising | Dropper.Agent!8.2F (CLOUD) |
| Ikarus | Trojan.CobaltStrike |
| Fortinet | W64/GoCLR.A!tr |
| AVG | Win64:Trojan-gen |