rgoc2.bin
Classification: Malicious
rgoc2.bin is a malicious file sample. Linked to Ta505 activity. Reported by 1 threat source, last seen 2020-09-09. Detected by 7 antivirus engines.
Detection summary
- 7 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: TA505 (G0092)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| TA505 | Abuse.ch | 2020-09-09 14:01:41 | 2020-09-09 14:01:41 | malicious-activity | G0092 TA505 |
Sample information
- Filenames
- rgoc2.bin
- File type
- application/x-dosexec
- MD5
b2fbe9a356d1598b271a9631a922ef7a- SHA-1
fc9c3ee5aa81de37171302b62e7854b45b733546- SHA-256
e2b03931b8adf597caceb14e8b3016586fc91e296d34b2395ed2da140a9b6343- First indexed
- 2020-09-09 15:15:08
- Last updated
- 2025-11-01 20:15:39
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| CrowdStrike | win/malicious_confidence_80% (D) |
| Rising | Trojan.Detplock!8.4A0D (TFE:4:C2a7idCOBrG) |
| FireEye | Generic.mg.b2fbe9a356d1598b |
| Microsoft | Trojan:Win32/Wacatac.C!ml |
| Cynet | Malicious (score: 100) |
| Fortinet | W64/Kryptik.BVG!tr |