CheraxLoader.exe

Classification: Malicious

CheraxLoader.exe is a malicious file sample. Reported by 2 threat sources, last seen 2026-09-02. Detected by 46 antivirus engines.

Detection summary

  • 46 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Suspicious Sample Triage 2026-09-02 14:49:11 2026-09-02 14:49:11 anomalous-activity
Generic Malware Triage 2026-02-03 07:01:36 2026-05-07 19:55:35 malicious-activity
Generic Malware Hybrid-Analysis 2026-01-29 18:35:14 2026-02-03 16:45:05

Tags

discovery persistence ransomware adware spyware privilege_escalation defense_evasion

Sample information

Filenames
CheraxLoader.exe, CheraxLoader (2).exe, ae348abf0227e0fe4c20c39c6ce043ca66ad81a885727801649d240a08e7599f.bin
File type
PE32+ executable for MS Windows 6.00 (GUI), x86-64 ...
MD5
497224172d017166b71489fb91b25bbb
SHA-1
865890c4001cae75530a5a21512538749024cf7c
SHA-256
ae348abf0227e0fe4c20c39c6ce043ca66ad81a885727801649d240a08e7599f
SHA-512
d83c1b2340fcd067af9ce9d58f3e76cfc0ce4b3388aabe18261346ee103ce539830ceaa7fe4cc6707b148c59cd05cfbd7807546b9bb420e0270d669afdaa47f5
First indexed
2026-01-29 17:42:56
Last updated
2026-09-02 14:55:13

Antivirus detections

EngineDetection
ALYacGen:Variant.Mikey.183834
AVGWin64:MalwareX-gen [Misc]
AhnLab-V3Trojan/Win.Generic.C5833492
AlibabaTrojan:Win32/Malgent.58bf5458
Antiy-AVLTrojan/Win32.Sabsik
ArcabitTrojan.Mikey.D2CE1A
AvastWin64:MalwareX-gen [Misc]
BitDefenderGen:Variant.Mikey.183834
BkavW64.AIDetectMalware
CAT-QuickHealTrojan.Malgent
CTXexe.trojan.malgent
CrowdStrikewin/malicious_confidence_90% (D)
CylanceUnsafe
CynetMalicious (score: 99)
DeepInstinctMALICIOUS
ESET-NOD32Win64/Agent_AGen.IWX trojan
Elasticmalicious (high confidence)
EmsisoftGen:Variant.Mikey.183834 (B)
FortinetW64/Agent_AGen.IWX!tr
GDataGen:Variant.Mikey.183834
GoogleDetected
GridinsoftRansom.Win64.Sabsik.sa
IkarusTrojan.Win64.Agent
K7AntiVirusTrojan ( 006d54e91 )
K7GWTrojan ( 006d54e91 )
LionicTrojan.Win32.Malgent.4!c
MalwarebytesMalware.AI.3542213673
MaxSecureTrojan.Malware.338148470.susgen
MicroWorld-eScanGen:Variant.Mikey.183834
MicrosoftTrojan:Win32/Malgent!MSR
Paloaltogeneric.ml
RisingMalware.Undefined!8.C (TFE:5:1vgogTPQeMC)
SangforTrojan.Win32.Malgent.Vksy
SkyhighBehavesLike.Win64.Dropper.vh
SophosMal/Generic-S
SymantecML.Attribute.HighConfidence
TencentMalware.Win32.Gencirc.14a8914f
TrellixENSArtemis!497224172D01
TrendMicroTROJ_GEN.R002C0DB626
TrendMicro-HouseCallTROJ_GEN.R002C0DB626
VIPREGen:Variant.Mikey.183834
VaristW64/ABTrojan.KZMR-2848
ViRobotTrojan.Win.Z.Mikey.6727680
YandexTrojan.Igent.b52tVu.8
ZillyaTrojan.AgentAGen.Win64.27925
alibabacloudTrojan:Win/Agent_AGen.IIF