e2c6dee089bd8c3d23ab7d422e25c5f21553bda2c805f9e63765371ba71feaa9
Classification: Malicious
e2c6dee089bd8c3d23ab7d422e25c5f21553bda2c805f9e63765371ba71feaa9 is a malicious file sample. Linked to Lurid malware. Detected by 59 antivirus engines.
Detection summary
- 59 antivirus detections (83% detection ratio)
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 3 DNS requests
MITRE ATT&CK associations
Malware families: LURID (S0010)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| enfal | Maltiverse | 2018-01-10 08:00:24 | 2018-01-10 08:00:24 | S0010 Lurid |
Tags
enfalSample information
- Filenames
- e2c6dee089bd8c3d23ab7d422e25c5f21553bda2c805f9e63765371ba71feaa9
- File type
- PE32 executable (GUI) Intel 80386, for MS Windows
- Size
- 125136 bytes
- MD5
f0f31112af491f56af7cc0802ba96c0f- SHA-1
6517caa62fbfdf767879625be9e0ba999b9482d7- SHA-256
e2c6dee089bd8c3d23ab7d422e25c5f21553bda2c805f9e63765371ba71feaa9- SHA-512
fab6ff707debfa70a092b1d1477164127326fa76a146c3943d4824e0b729784bbb113fdaf5a0c995358063dcc2d9ddddf02d8b8ce4355a05ae9bccb683bbd148- First indexed
- 2018-01-10 08:00:24
- Last updated
- 2025-12-02 01:16:17
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Trojan.Generic.Agent |
| APEX | Malicious |
| AVG | Win32:DropperX-gen [Drp] |
| AhnLab-V3 | Dropper/Win32.Agent.C123880 |
| Alibaba | Trojan:Win32/Cromptui.460ae8f9 |
| Antiy-AVL | Trojan[APT]/Win32.APT15 |
| Arcabit | Trojan.Mint.Zard.60 |
| Avast | Win32:DropperX-gen [Drp] |
| Avira | HEUR/AGEN.1361588 |
| BitDefender | Gen:Heur.Mint.Zard.60 |
| CAT-QuickHeal | Trojan.Ghanarava.1658919084a96c0f |
| CTX | exe.unknown.mint |
| ClamAV | Win.Trojan.Enfal-12 |
| CrowdStrike | win/malicious_confidence_90% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 99) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.MulDrop1.40578 |
| ESET-NOD32 | Win32/Pucedoor.A |
| Elastic | malicious (high confidence) |
| Emsisoft | Gen:Heur.Mint.Zard.60 (B) |
| F-Secure | Heuristic.HEUR/AGEN.1361588 |
| FireEye | Generic.mg.f0f31112af491f56 |
| Fortinet | W32/Pucedoor.A!tr |
| GData | Gen:Heur.Mint.Zard.60 |
| Detected | |
| Gridinsoft | Backdoor.Win32.Gen.sm!s2 |
| Ikarus | Trojan-Dropper.Agent |
| Jiangmin | Trojan.Generic.hoyka |
| K7AntiVirus | Trojan ( 004cbc6f1 ) |
| K7GW | Trojan ( 004cbc6f1 ) |
| Kaspersky | HEUR:Trojan.Win32.Generic |
| Kingsoft | Win32.HeurC.KVM007.a |
| Lionic | Trojan.Win32.Generic.4!c |
| Malwarebytes | Malware.AI.3802309743 |
| MaxSecure | Trojan.Malware.300983.susgen |
| McAfee | GenericRXCF-LM!F0F31112AF49 |
| McAfeeD | ti!E2C6DEE089BD |
| MicroWorld-eScan | Gen:Heur.Mint.Zard.60 |
| Microsoft | Trojan:Win32/Cromptui.A |
| NANO-Antivirus | Trojan.Win32.Agent.cqprfp |
| Paloalto | generic.ml |
| Panda | Trj/CI.A |
| Rising | Worm.VBInjectEx!1.99E6 (CLASSIC) |
| Sangfor | Trojan.Win32.Pucedoor.A |
| Skyhigh | BehavesLike.Win32.Dropper.cm |
| Sophos | Mal/Behav-116 |
| Symantec | Backdoor.Meciv |
| Tencent | Malware.Win32.Gencirc.10b64c41 |
| VBA32 | TrojanDropper.Agent |
| VIPRE | Gen:Heur.Mint.Zard.60 |
| Varist | W32/Risk.FEBH-0074 |
| Webroot | W32.Backdoor.Gen |
| Xcitium | Malware@#8kxg548qihk3 |
| Yandex | Trojan.GenAsa!oEIy7w28n8c |
| Zillya | Dropper.Agent.Win32.116836 |
| ZoneAlarm | Mal/Luiha-C |
| alibabacloud | Trojan:Win/Pucedoor.A |
| huorong | HEUR:Trojan/Fake.d |
DNS requests
microsoft.office-helppane.com update.ymail-vip.com win.foxit-pro.com