da1e6d75fe0c964385eb3c12831499b106ecb674d4abb37f730c014ab23bf095.bin
Classification: Malicious
da1e6d75fe0c964385eb3c12831499b106ecb674d4abb37f730c014ab23bf095.bin is a malicious file sample. Linked to Sakula malware. Detected by 62 antivirus engines.
Detection summary
- 62 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 1 contacted hosts
- 1 DNS requests
MITRE ATT&CK associations
Malware families: SAKULA (S0074)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic Malware | Hybrid-Analysis | 2026-04-14 10:45:05 | 2026-04-14 10:45:05 | ||
| Sakula | Triage | 2026-04-14 09:50:31 | 2026-04-14 09:50:31 | malicious-activity | S0074 Sakula |
Tags
sakula discovery persistence rat trojanSample information
- Filenames
- da1e6d75fe0c964385eb3c12831499b106ecb674d4abb37f730c014ab23bf095.bin, da1e6d75fe0c964385eb3c12831499b106ecb674d4abb37f730c014ab23bf095.exe
- File type
- PE32 executable for MS Windows 5.01 (GUI), Intel i ...
- MD5
bf4ec489df24f29b1175cb3523631a1f- SHA-1
b7729696998dfa64ff353d67c35a424e1cfaa24d- SHA-256
da1e6d75fe0c964385eb3c12831499b106ecb674d4abb37f730c014ab23bf095- First indexed
- 2026-04-14 09:50:31
- Last updated
- 2026-09-03 01:04:53
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Gen:Variant.Application.jaik.47793 |
| APEX | Malicious |
| Acronis | suspicious |
| AhnLab-V3 | Trojan/Win.Scar.R703960 |
| Alibaba | Trojan:Win32/Shyape.6d128645 |
| Antiy-AVL | Trojan/Win32.Scar |
| Arcabit | Trojan.Application.jaik.DBAB1 |
| Avira | TR/Crypt.XPACK.Gen |
| BitDefender | Gen:Variant.Application.jaik.47793 |
| Bkav | W32.AIDetectMalware |
| CAT-QuickHeal | Trojan.ScarPMF.S31320404 |
| CTX | exe.trojan.scar |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.DownLoad3.19306 |
| ESET-NOD32 | Win32/Shyape.G trojan |
| Elastic | malicious (high confidence) |
| Emsisoft | Gen:Variant.Application.jaik.47793 (B) |
| F-Secure | Trojan.TR/Crypt.XPACK.Gen |
| Fortinet | W32/Shyape.G!tr |
| GData | Win32.Trojan.Sakurel.B |
| Detected | |
| Gridinsoft | Ransom.Win32.Zbot.oa!s1 |
| Ikarus | Trojan.Win32.Scar |
| Jiangmin | Trojan.GenericML.xz |
| K7AntiVirus | Trojan ( 0054e5911 ) |
| K7GW | Trojan ( 0054e5911 ) |
| Kaspersky | Trojan.Win32.Scar.okdf |
| Kingsoft | Win32.Trojan.Scar.okdf |
| Lionic | Trojan.Win32.Agent.tnrQ |
| Malwarebytes | Shyape.Trojan.Dropper.DDS |
| MaxSecure | Trojan.Malware.6957561.susgen |
| McAfeeD | Real Protect-LS!BF4EC489DF24 |
| MicroWorld-eScan | Gen:Variant.Application.jaik.47793 |
| Microsoft | Trojan:Win32/Downloader!pz |
| NANO-Antivirus | Trojan.Win32.Scar.hfuutn |
| Paloalto | generic.ml |
| Panda | Trj/Genetic.gen |
| Rising | Backdoor.FFRat!1.A74F (CLASSIC) |
| Sangfor | Virus.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Sophos | Troj/Kelihos-BS |
| TACHYON | Trojan/W32.Agent.101376.ZT |
| Tencent | Trojan.Win32.Scar.wb |
| Trapmine | malicious.high.ml.score |
| TrendMicro | BKDR_DIOFOPI.SM |
| TrendMicro-HouseCall | BKDR_DIOFOPI.SM |
| VBA32 | Trojan.Scar |
| VIPRE | Gen:Variant.Application.jaik.47793 |
| Varist | W32/Trojan.IJJI-8308 |
| ViRobot | Trojan.Win32.Sakula.81408 |
| VirIT | Trojan.Win32.DownLoad3.BCOO |
| Webroot | W32.Trojan.Gen |
| Xcitium | TrojWare.Win32.Shyape.Z@83gos3 |
| Yandex | Trojan.GenAsa!qk1ef4WVH7Q |
| Zillya | Trojan.Scar.Win32.143476 |
| ZoneAlarm | Troj/Kelihos-BS |
| Zoner | Trojan.Win32.34396 |
| alibabacloud | Trojan:Win/Shyape |
| huorong | Trojan/Diofopi.a |