dc9c5d5251164a289cac05382c699c11fb51463f88fea60746dd571e1feeb5fc

Classification: Malicious

dc9c5d5251164a289cac05382c699c11fb51463f88fea60746dd571e1feeb5fc is a malicious file sample. Linked to Xloader malware. Detected by 54 antivirus engines.

Detection summary

  • 54 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: XLOADER (S1207)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Formbook MalwareBazaar Abuse.ch 2023-12-08 13:45:55 2023-12-08 13:45:55 malicious-activity S1207 XLoader

Sample information

Filenames
dc9c5d5251164a289cac05382c699c11fb51463f88fea60746dd571e1feeb5fc
File type
application/x-dosexec
MD5
26c7731786626894ce4fcc339951a26b
SHA-1
5103ffe527e144a275696454b45b1bda26c152bd
SHA-256
dc9c5d5251164a289cac05382c699c11fb51463f88fea60746dd571e1feeb5fc
First indexed
2023-12-08 14:18:46
Last updated
2026-09-02 15:28:37

Antivirus detections

EngineDetection
BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Taskun.4!c
MicroWorld-eScanIL:Trojan.MSILZilla.41561
CAT-QuickHealTrojan.Agenttesla
SkyhighRDN/Generic PWS.y
McAfeeRDN/Generic PWS.y
MalwarebytesTrojan.MalPack.PNG.Generic
VIPREIL:Trojan.MSILZilla.41561
SangforInfostealer.Msil.AgentTesla.V00u
AlibabaTrojan:MSIL/AgentTesla.2708122c
ArcabitIL:Trojan.MSILZilla.DA259
BitDefenderThetaGen:NN.ZemsilF.36608.Wm0@a0HaRZo
VirITTrojan.Win32.MSIL_Heur.A
SymantecScr.Malcode!gdn34
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.IAZZCUK
CynetMalicious (score: 100)
APEXMalicious
KasperskyHEUR:Trojan.MSIL.Taskun.gen
BitDefenderIL:Trojan.MSILZilla.41561
AvastWin32:PWSX-gen [Trj]
TencentMalware.Win32.Gencirc.13f87cd8
EmsisoftIL:Trojan.MSILZilla.41561 (B)
F-SecureTrojan.TR/AD.Swotter.ladfk
DrWebTrojan.Inject4.59820
ZillyaTrojan.Taskun.Win32.10761
TrendMicroTROJ_GEN.R002C0DL223
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.26c7731786626894
SophosTroj/Krypt-ABH
IkarusTrojan.MSIL.Krypt
VaristW32/MSIL_Agent.GYX.gen!Eldorado
AviraTR/AD.Swotter.ladfk
Antiy-AVLTrojan[Spy]/MSIL.Noon
KingsoftWin32.Troj.Undef.a
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:MSIL/AgentTesla.MBFD!MTB
ViRobotTrojan.Win.Z.Taskun.786432
ZoneAlarmHEUR:Trojan.MSIL.Taskun.gen
GDataIL:Trojan.MSILZilla.41561
GoogleDetected
AhnLab-V3Infostealer/Win.MSIL.R625593
ALYacSpyware.Noon.gen
MAXmalware (ai score=81)
VBA32TrojanLoader.MSIL.DaVinci.Heur
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DL223
RisingMalware.Obfus/[email protected] (RDM.MSIL2:MOJh7kuOe6ia0DqCqoJfrg)
MaxSecureTrojan.Malware.74644571.susgen
FortinetMSIL/Kryptik.AKFO!tr
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)