b19285bcdf3fed2f9bda055d9f61118a616664ee0a6b594f9731ce20cb67daf5
Classification: Malicious
b19285bcdf3fed2f9bda055d9f61118a616664ee0a6b594f9731ce20cb67daf5 is a malicious file sample. Linked to Wannacry malware. Detected by 58 antivirus engines.
Detection summary
- 58 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: WANNACRY (S0366)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| WannaCryptor | ThreatFox Abuse.ch | 2026-06-18 16:49:18 | 2026-06-18 17:25:03 | ||
| Generic Malware | Hybrid-Analysis | 2026-06-18 13:45:03 | 2026-06-18 13:45:03 | malicious-activity | |
| WannaCry | MalwareBazaar Abuse.ch | 2026-06-18 13:15:36 | 2026-06-18 13:15:36 | malicious-activity | S0366 WannaCry |
Tags
ransomware wanacrypt0r wannacry wcry win.wannacryptor wana decrypt0r wannacryptSample information
- Filenames
- b19285bcdf3fed2f9bda055d9f61118a616664ee0a6b594f9731ce20cb67daf5, b19285bcdf3fed2f9bda055d9f61118a616664ee0a6b594f9731ce20cb67daf5.bin
- File type
- PE32+ executable for MS Windows 5.02 (DLL), x86-64 ...
- MD5
db133a7ead8a83e3dd1a6b2bc4ee41c7- SHA-1
4bd8ece432c1638d9e0b7e65e4f13483a7ae9870- SHA-256
b19285bcdf3fed2f9bda055d9f61118a616664ee0a6b594f9731ce20cb67daf5- First indexed
- 2026-06-18 13:15:36
- Last updated
- 2026-09-03 00:52:49
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Exploit.CVE-2017-0147 |
| APEX | Malicious |
| AVG | Sf:WNCryLdr-A [Trj] |
| AhnLab-V3 | Trojan/Win32.WannaCryptor.R200894 |
| Alibaba | Ransom:Win32/WannaCrypt.50a |
| Antiy-AVL | Trojan[Exploit]/Win64.CVE-2017-0147 |
| Arcabit | Exploit.CVE-2017-0147 |
| Avast | Sf:WNCryLdr-A [Trj] |
| Avira | EXP/W32.CVE-2017-01.E |
| BitDefender | Exploit.CVE-2017-0147 |
| Bkav | W32.Malware.3039C00 |
| CAT-QuickHeal | Ransom.WcryG.S28363974 |
| CTX | dll.trojan.wanna |
| ClamAV | Win.Ransomware.Wanna-9769986-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DrWeb | Trojan.Encoder.11432 |
| ESET-NOD32 | Win64/Exploit.CVE-2017-0147.A trojan |
| Elastic | malicious (high confidence) |
| Emsisoft | Exploit.CVE-2017-0147 (B) |
| F-Secure | Exploit.EXP/W32.CVE-2017-01.E |
| Fortinet | W64/Wanna.AK!tr.ransom |
| GData | Exploit.CVE-2017-0147 |
| Gridinsoft | Trojan.Win64.Downloader.oa!s1 |
| Jiangmin | Trojan.Wanna.e |
| K7AntiVirus | Trojan ( 0058feba1 ) |
| K7GW | Trojan ( 0058feba1 ) |
| Kaspersky | Trojan.Win32.Eb.s |
| Kingsoft | Win32.Exploit.MS17-010.cb |
| Lionic | Trojan.Win32.Wanna.ts4v |
| Malwarebytes | CVE20170147.Trojan.Exploit.DDS |
| McAfeeD | Trojan:Win/WannaCry.AA |
| MicroWorld-eScan | Exploit.CVE-2017-0147 |
| Microsoft | Ransom:Win32/WannaCrypt!pz |
| NANO-Antivirus | Trojan.Win32.Wanna.epclsl |
| Paloalto | generic.ml |
| Panda | Trj/GeneticOnn.gen |
| Rising | Exploit.EternalBlue!1.AAED (CLASSIC) |
| Sangfor | Ransom.Win32.Wannacrypt_0.se2 |
| Skyhigh | Ransom!DB133A7EAD8A |
| Sophos | Mal/Wanna-A |
| Symantec | Ransom.Wannacry |
| TACHYON | Ransom/W32.WannaCry.5298176 |
| Tencent | Malware.Win32.Gencirc.11e5d4e3 |
| TrellixENS | Ransom!DB133A7EAD8A |
| TrendMicro | Trojan.Win32.ZYX.USBLFI26 |
| TrendMicro-HouseCall | Trojan.Win32.ZYX.USBLFI26 |
| VBA32 | TrojanRansom.Win64.Wanna |
| VIPRE | Exploit.CVE-2017-0147 |
| Varist | W64/S-e4f863f0!Eldorado |
| ViRobot | Trojan.Win.Z.Cve_2017_0147.5298176.D |
| Webroot | W32.Trojan.Gen |
| Yandex | Trojan.GenAsa!DtE/ovQwFGg |
| Zillya | Adware.Eb.Win32.1 |
| ZoneAlarm | Mal/Wanna-A |
| alibabacloud | RansomWare:Win/Wannacryptor |
| huorong | TrojanDropper/Agent.mh |