2026-02-15_5d1bbeaa83c50744eee24f6ddc3970c6_drokbk_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee

Classification: Malicious

2026-02-15_5d1bbeaa83c50744eee24f6ddc3970c6_drokbk_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee is a malicious file sample. Linked to Dcrat malware.

Detection summary

  • 61 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: DCRAT (S9017)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Dcrat Triage 2026-02-15 13:25:51 2026-02-15 13:25:51 malicious-activity S9017 DCRAT

Tags

dcrat defense_evasion discovery execution infostealer persistence rat trojan

Sample information

Filenames
2026-02-15_5d1bbeaa83c50744eee24f6ddc3970c6_drokbk_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee
MD5
5d1bbeaa83c50744eee24f6ddc3970c6
SHA-1
35b460045de6c26005700dd2729e135069ef14f8
SHA-256
aa64f1e8594ed4db44a140de1550d8e7ea1f6a0eddbd66461f2da1cac3b5b1be
SHA-512
339cc6d5555d1d3d1ace2ff432ef8cdfdec10fa5ec79912cd4763b4f32c338033ddfd1f08cd5b55cca63da91e302c1411946f8dcb8978be66f402f2dab2d9217
First indexed
2026-02-15 13:25:51
Last updated
2026-09-03 00:22:15

Antivirus detections

EngineDetection
ALYacTrojan.Agent.GPZU
APEXMalicious
AVGWin32:Evo-gen [Trj]
AhnLab-V3Backdoor/Win.DCRat.R729785
AlibabaBackdoor:Win32/DCRat.cda6f45a
Antiy-AVLTrojan[Backdoor]/MSIL.DCRat
ArcabitTrojan.Agent.GPZU
AvastWin32:Evo-gen [Trj]
AviraHEUR/AGEN.1323984
BitDefenderTrojan.Agent.GPZU
BkavW32.AIDetectMalware
CAT-QuickHealTrojan.Ghanarava.17711656883970c6
CTXexe.trojan.dcrat
ClamAVWin.Malware.Gpzu-10058391-0
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
CynetMalicious (score: 99)
DeepInstinctMALICIOUS
DrWebTrojan.Siggen31.31069
ESET-NOD32MSIL/Agent.VRB trojan
Elasticmalicious (high confidence)
EmsisoftTrojan.Agent.GPZU (B)
F-SecureHeuristic.HEUR/AGEN.1323984
FortinetW32/Agent.VRB!tr
GDataTrojan.Agent.GPZU
GoogleDetected
GridinsoftTrojan.Win32.Agent.oa!s1
IkarusTrojan.MSIL.Agent
K7AntiVirusTrojan ( 0001140e1 )
K7GWTrojan ( 0001140e1 )
KasperskyHEUR:Backdoor.MSIL.DcRat.pef
KingsoftMSIL.Backdoor.DcRat.pef
LionicTrojan.Win32.DCRat.m!c
MalwarebytesSpyware.Passwordstealer
MaxSecureTrojan.Malware.120990306.susgen
McAfeeDReal Protect-LS!5D1BBEAA83C5
MicroWorld-eScanTrojan.Agent.GPZU
MicrosoftTrojan:Win32/DCRat.MX!MTB
Paloaltogeneric.ml
PandaTrj/Genetic.gen
RisingStealer.Agent!8.C2 (CLOUD)
SUPERAntiSpywareTrojan.Agent/Gen-Stealer
SangforSuspicious.Win32.Save.pkr
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.Injector.tc
SophosTroj/DCRat-AC
SymantecML.Attribute.HighConfidence
TencentTrojan.Msil.Agent.hbf
TrellixENSGenericRXWS-LY!5D1BBEAA83C5
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9z
VBA32Backdoor.MSIL.DcRat
VIPRETrojan.Agent.GPZU
VaristW32/Trojan.DAIU-7549
ViRobotTrojan.Win.Z.Agent.2078720.TPB
VirITTrojan.Win32.GenusT.EXYL
WebrootWin.Malware.Gen
ZillyaTrojan.Stealer.Win32.199293
ZoneAlarmTroj/DCRat-AC
alibabacloudBackdoor:MSIL/DCRat.MD8PHU
huorongBackdoor/MSIL.DCRat.x
tehtrisGeneric.Malware