2026-03-31_2407d539f9f0d41246ebf103ac50756b_elex_emotet_icedid_krbanker_remcos_stop
Classification: Malicious
2026-03-31_2407d539f9f0d41246ebf103ac50756b_elex_emotet_icedid_krbanker_remcos_stop is a malicious file sample. Detected by 61 antivirus engines.
Detection summary
- 61 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Blackmoon |
Triage |
2026-03-31 04:59:50 |
2026-03-31 04:59:50 |
malicious-activity
|
|
Tags
blackmoon
banker
discovery
trojan
Sample information
- Filenames
- 2026-03-31_2407d539f9f0d41246ebf103ac50756b_elex_emotet_icedid_krbanker_remcos_stop
- SHA-256
b31479b147497ba6c16bc90c12045c3421760d6f625da3f657dd55f24b212955
- First indexed
- 2026-03-31 04:59:50
- Last updated
- 2026-09-03 00:54:08
Antivirus detections
| Engine | Detection |
| APEX | Malicious |
| AVG | Win32:Malware-gen |
| AhnLab-V3 | Dropper/Win.Injector.R451014 |
| Antiy-AVL | Trojan/Win32.Upatre |
| Arcabit | Trojan.Adware.jaik.DA3C1 |
| Avast | Win32:Malware-gen |
| Avira | HEUR/Malware |
| BitDefender | Gen:Variant.Adware.jaik.41921 |
| CAT-QuickHeal | Trojan.Mauvaise.SL1 |
| CTX | exe.adware.jaik |
| ClamAV | Win.Dropper.Tiggre-9845940-0 |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.DownLoader23.45890 |
| ESET-NOD32 | Win32/Adware.Hebchengjiu.C application |
| Elastic | Windows.Generic.Threat |
| Emsisoft | Gen:Variant.Adware.jaik.41921 (B) |
| F-Secure | Heuristic.HEUR/Malware |
| Fortinet | W32/GenericRXDM.NN!tr |
| GData | Win32.Application.PUPStudio.B |
| Google | Detected |
| Gridinsoft | Trojan.Win32.Downloader.oa!s1 |
| Ikarus | Trojan.Win32.Tonmye |
| Jiangmin | AdWare.Generic.cpln |
| K7AntiVirus | Trojan ( 005328801 ) |
| K7GW | Trojan ( 005328801 ) |
| Kaspersky | HEUR:Trojan-Downloader.Win32.Generic |
| Kingsoft | malware.kb.a.1000 |
| Lionic | Adware.Win32.AdLoad.2!c |
| Malwarebytes | Hebchengjiu.Adware.Advertising.DDS |
| MaxSecure | Trojan.Malware.121218.susgen |
| McAfeeD | Real Protect-LS!2407D539F9F0 |
| MicroWorld-eScan | Gen:Variant.Adware.jaik.41921 |
| Microsoft | Trojan:Win32/Upatre |
| NANO-Antivirus | Trojan.Win32.Inject.egptge |
| Panda | Trj/Genetic.gen |
| Rising | Downloader.Generic!8.141 (TFE:5:7LXjXuuHuaJ) |
| SUPERAntiSpyware | Trojan.Agent/GenericKD |
| Sangfor | Trojan.Win32.Save.BlackMoon |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Generic.th |
| Sophos | Troj/AutoG-AD |
| Symantec | ML.Attribute.HighConfidence |
| TACHYON | Trojan-Downloader/W32.Agent.1615544 |
| Tencent | Adware.Win32.Hebchengjiu.16000480 |
| Trapmine | malicious.high.ml.score |
| TrellixENS | GenericRXDM-NN!2407D539F9F0 |
| TrendMicro-HouseCall | Trojan.Win32.VSX.PE04C9z |
| VBA32 | Adware.AdLoad |
| VIPRE | Gen:Variant.Adware.jaik.41921 |
| Varist | W32/BlackMoon.J.gen!Eldorado |
| VirIT | Trojan.Win32.Dnldr23.CPXA |
| Webroot | W32.Trojan.Gen |
| Xcitium | Application.Win32.AdWare.Hebchengjiu.B@72arj8 |
| Yandex | Trojan.GenAsa!5Vn07DYbtSY |
| Zillya | Trojan.GenericKD.Win32.147726 |
| ZoneAlarm | Troj/AutoG-AD |
| huorong | TrojanDownloader/Agent.eo |
| tehtris | Generic.Malware |