2026-01-31_fae8432daf2ba2d1d49daecc3269bd7d_coinminer_elex_frostygoop_glassworm_poet-rat_salatstealer_sliver_snatch
Classification: Malicious
2026-01-31_fae8432daf2ba2d1d49daecc3269bd7d_coinminer_elex_frostygoop_glassworm_poet-rat_salatstealer_sliver_snatch is a malicious file sample.
Detection summary
- 73 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Salatstealer |
Triage |
2026-02-01 01:20:09 |
2026-02-01 01:20:09 |
malicious-activity
|
|
Tags
salatstealer
credential_access
defense_evasion
discovery
spyware
stealer
trojan
Sample information
- Filenames
- 2026-01-31_fae8432daf2ba2d1d49daecc3269bd7d_coinminer_elex_frostygoop_glassworm_poet-rat_salatstealer_sliver_snatch
- MD5
fae8432daf2ba2d1d49daecc3269bd7d
- SHA-1
628f701b5a61c05f811b153a6888aab3071597d1
- SHA-256
d49dbd8f65ea9b62af9d0953fdecd9cf95e38e35a08c95a0c7a43d1051dc93e9
- SHA-512
c0142e956bf662904c6eef661e57d47ca101171896cdd378df7f3c3792bda211a3e34b60625b60072432814045329073ba49493da09d8e74a9104fa2905fccd7
- First indexed
- 2026-02-01 01:20:09
- Last updated
- 2026-09-03 00:17:23
Antivirus detections
| Engine | Detection |
| ALYac | Trojan.Generic.39470236 |
| AVG | Win32:SalatStealer-A [Pws] |
| AhnLab-V3 | Trojan/Win.Generic.R727379 |
| Alibaba | Trojan:Win32/SalatStealer.ea7198e3 |
| Antiy-AVL | Trojan/Win32.Vidar |
| Arcabit | Trojan.Generic.D25A449C |
| Avast | Win32:SalatStealer-A [Pws] |
| Avira | HEUR/AGEN.1379700 |
| BitDefender | Trojan.Generic.39470236 |
| Bkav | W32.AIDetectMalware |
| CAT-QuickHeal | Trojan.Agent |
| CTX | exe.trojan.salat |
| ClamAV | Win.Malware.Salat-10058846-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 99) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.PWS.Salat.332 |
| ESET-NOD32 | WinGo/Agent.VO trojan |
| Elastic | Multi.Generic.Threat |
| Emsisoft | Trojan.Generic.39470236 (B) |
| F-Secure | Heuristic.HEUR/AGEN.1379700 |
| Fortinet | W32/Agent.VO!tr |
| GData | Win32.Trojan.PSE.HTNCPY |
| Google | Detected |
| Gridinsoft | Trojan.Win32.Agent.sa |
| Ikarus | Trojan.WinGo.Agent |
| K7AntiVirus | Trojan ( 005c07f81 ) |
| K7GW | Trojan ( 005c07f81 ) |
| Kaspersky | UDS:Trojan-Banker.Win32.Agent.gen |
| Lionic | Trojan.Win32.Agent.tt1u |
| Malwarebytes | Malware.AI.2169669340 |
| MaxSecure | Trojan.Malware.121218.susgen |
| McAfeeD | ti!D49DBD8F65EA |
| MicroWorld-eScan | Trojan.Generic.39470236 |
| Microsoft | Trojan:Win32/Vidar.MCQ!MTB |
| NANO-Antivirus | Trojan.Win32.Salat.lelhyf |
| Paloalto | generic.ml |
| Panda | Trj/CI.A |
| Rising | Stealer.Salat!1.13A22 (CLASSIC) |
| Sangfor | Infostealer.Win32.Agent.V7ve |
| SentinelOne | Static AI - Malicious PE |
| Sophos | Troj/Salat-A |
| Tencent | Trojan.Win32.Stealer.16001830 |
| TrellixENS | Artemis!FAE8432DAF2B |
| TrendMicro | TROJ_GEN.R002C0DAU26 |
| TrendMicro-HouseCall | TROJ_GEN.R002C0DAU26 |
| VBA32 | BScope.TrojanDownloader.Ajent |
| VIPRE | Trojan.Generic.39470236 |
| Varist | W32/Agent.LNT.gen!Eldorado |
| Webroot | Win.Trojan.Gen |
| ZoneAlarm | Troj/Salat-A |
| alibabacloud | Trojan:Multi/Rozena.SS |
| huorong | Trojan/Agent.e!crit |
| ALYac | Gen:Variant.Tedy.870742 |
| Arcabit | Trojan.Tedy.DD4956 |
| Avira | TR/W32.Evo |
| BitDefender | Gen:Variant.Tedy.870742 |
| Bkav | W32.Malware.9F51A538 |
| Emsisoft | Gen:Variant.Tedy.870742 (B) |
| F-Secure | Trojan.TR/W32.Evo |
| GData | Gen:Variant.Tedy.870742 |
| Kaspersky | HEUR:Trojan-PSW.Win32.Coins.pefng |
| Kingsoft | Win32.Trojan-Banker.Agent.gen |
| Malwarebytes | Spyware.SalatStealer |
| McAfeeD | Trojan:Win/SalatStealer.AA |
| MicroWorld-eScan | Gen:Variant.Tedy.870742 |
| Sangfor | Infostealer.Win32.Agent.Vhqs |
| Symantec | ML.Attribute.HighConfidence |
| TrendMicro-HouseCall | Trojan.Win32.VSX.PE04CA5 |
| VIPRE | Gen:Variant.Tedy.870742 |
| Varist | W32/Agent.MAZ.gen!Eldorado |
| VirIT | Trojan.Win32.SalatStlr.JEP |