acf1dbd518124b4482134be303a871a7.exe
Classification: Malicious
acf1dbd518124b4482134be303a871a7.exe is a malicious file sample. Linked to Servhelper malware. Reported by 1 threat source, last seen 2021-03-31.
Detection summary
- 24 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SERVHELPER (S0382)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| ServHelper | Abuse.ch | 2021-03-31 18:26:00 | 2021-03-31 18:26:00 | malicious-activity | S0382 ServHelper |
Sample information
- Filenames
- acf1dbd518124b4482134be303a871a7.exe
- File type
- application/x-dosexec
- MD5
acf1dbd518124b4482134be303a871a7- SHA-1
7614e9da672d8dda0121c2521528a842a9c1ef4d- SHA-256
c302411319308e836e2eac6893ba39b513226d19d874ce9ff7fbbbd07316aba3- First indexed
- 2021-03-31 20:15:09
- Last updated
- 2026-04-29 11:14:36
Antivirus detections
| Engine | Detection |
|---|---|
| MicroWorld-eScan | Gen:Variant.Injector.155 |
| FireEye | Gen:Variant.Injector.155 |
| McAfee | Artemis!ACF1DBD51812 |
| CrowdStrike | win/malicious_confidence_60% (D) |
| Cyren | W64/GoClr.A.gen!Eldorado |
| ESET-NOD32 | a variant of WinGo/GoCLR.A |
| ClamAV | Win.Malware.Bulz-9847817-0 |
| Kaspersky | VHO:Trojan-Dropper.MSIL.Agent.gen |
| BitDefender | Gen:Variant.Injector.155 |
| Ad-Aware | Gen:Variant.Injector.155 |
| Sophos | ML/PE-A |
| McAfee-GW-Edition | BehavesLike.Win64.Generic.vh |
| Emsisoft | Gen:Variant.Injector.155 (B) |
| APEX | Malicious |
| GData | Gen:Variant.Injector.155 |
| Jiangmin | Trojan.Cobalt.ic |
| Microsoft | Trojan:Win32/Glupteba!ml |
| Cynet | Malicious (score: 100) |
| AhnLab-V3 | Trojan/Win64.Generic.R373439 |
| ALYac | Gen:Variant.Injector.155 |
| MAX | malware (ai score=86) |
| Malwarebytes | Malware.AI.4239237678 |
| Ikarus | Trojan.WinGo.Goclr |
| eGambit | Unsafe.AI_Score_100% |