eef60e851002da7ddb2ffa04e97676e0.exe

Classification: Malicious

eef60e851002da7ddb2ffa04e97676e0.exe is a malicious file sample. Linked to Remcos malware. Reported by 2 threat sources, last seen 2025-08-26.

Detection summary

  • 55 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: REMCOS (S0332)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Remcos ThreatFox Abuse.ch 2025-08-24 17:51:35 2025-08-26 17:18:46 S0332 Remcos
RemcosRAT MalwareBazaar Abuse.ch 2025-08-24 14:48:11 2025-08-24 14:48:11 malicious-activity

Tags

win.remcos remcosrat remvio socmer

Sample information

Filenames
eef60e851002da7ddb2ffa04e97676e0.exe
File type
application/x-dosexec
MD5
eef60e851002da7ddb2ffa04e97676e0
SHA-1
2b5e18364749661733d1f77766b80117e245e0bb
SHA-256
9f5e1c5ea05a6275d90bac217e0fd8061c7e87e174b69bcdd26625e873c7579b
First indexed
2025-08-24 16:19:01
Last updated
2026-09-03 00:15:32

Antivirus detections

EngineDetection
ALYacTrojan.GenericKD.77153011
APEXMalicious
AVGWin32:MalwareX-gen [Cryp]
AhnLab-V3Trojan/Win.Kryptik.C5790626
AlibabaTrojan:MSIL/Kryptik.7e6dd2ca
ArcabitTrojan.Generic.D49942F3
AvastWin32:MalwareX-gen [Cryp]
AviraTR/Kryptik.lsgyf
BitDefenderTrojan.GenericKD.77153011
BkavW32.AIDetectMalware.CS
CAT-QuickHealTrojan.Ghanarava.17576109027676e0
CTXexe.trojan.msil
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebTrojan.PackedNET.3393
ESET-NOD32a variant of MSIL/Kryptik.AOFH
Elasticmalicious (high confidence)
EmsisoftTrojan.GenericKD.77153011 (B)
F-SecureTrojan.TR/Kryptik.lsgyf
FortinetMSIL/Formbook.D5D0!tr.spy
GDataTrojan.GenericKD.77153011
GoogleDetected
IkarusTrojan.MSIL.Inject
K7AntiVirusTrojan ( 005cc7f51 )
K7GWTrojan ( 005cc7f51 )
KasperskyHEUR:Backdoor.MSIL.Remcos.gen
Kingsoftmalware.kb.c.918
LionicTrojan.Win32.Remcos.m!c
MalwarebytesTrojan.MalPack
MaxSecureTrojan.Malware.423943036.susgen
McAfeeDti!9F5E1C5EA05A
MicroWorld-eScanTrojan.GenericKD.77153011
MicrosoftTrojan:MSIL/XWorm.SPZT!MTB
Paloaltogeneric.ml
PandaTrj/GdSda.A
RisingMalware.Obfus/[email protected] (RDM.MSIL2:/jXX2QORBwVf+9zuF4lnWQ)
SangforSuspicious.Win32.Save.a
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Generic.cc
SophosTroj/Krypt-AQM
SymantecMSIL.Packed.19
TencentTrojan.Msil.Kryptik.16002193
Trapminemalicious.moderate.ml.score
TrellixENSArtemis!EEF60E851002
TrendMicroBackdoor.Win32.REMCOS.YXFHXZ
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9n
VIPRETrojan.GenericKD.77153011
VaristW32/MSIL_Kryptik.MJN.gen!Eldorado
ViRobotTrojan.Win.Z.Kryptik.920576.A
VirITTrojan.Win32.MSIL.IQB
ZillyaTrojan.Kryptik.Win32.5475541
ZoneAlarmTroj/Krypt-AQM
alibabacloudBackdoor:MSIL/XWorm.SXPK3DGW
huorongTrojanSpy/MSIL.Formbook.az