Classification: Malicious
HorrorKrabs2.exe is a malicious file sample. Reported by 2 threat sources, last seen 2026-06-11. Detected by 44 antivirus engines.
Detection summary
- 44 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Triage |
2026-03-16 12:20:01 |
2026-06-11 19:00:25 |
malicious-activity
|
|
| Generic Malware |
Hybrid-Analysis |
2026-03-16 12:45:04 |
2026-03-16 12:45:04 |
|
|
Tags
bootkit
defense_evasion
discovery
evasion
persistence
ransomware
trojan
Sample information
- Filenames
- HorrorKrabs2.exe, HorrorKrabs 2.0.exe, HorrorKrabs2.0.exe, f75d2337bcf478874125007ccb29b2673b62af4ebd5190971ebb4cfbf3e6bc5d.bin
- File type
- PE32 executable for MS Windows 6.00 (GUI), Intel i ...
- MD5
2812d95e5c13473c19f15fb222b39917
- SHA-1
e36f1b4dbc0e73bc2a68e1a0f913d1d078ffdcc6
- SHA-256
f75d2337bcf478874125007ccb29b2673b62af4ebd5190971ebb4cfbf3e6bc5d
- SHA-512
89a62d021ba8fa79e22ebf6d3f2a59bd2933a44f7c376c22eb47e2f839aac2ad114239f970750f8e7d18cf728dd464b0efea9a8a6bfec61cee30dbc0130290ef
- First indexed
- 2026-03-16 12:20:01
- Last updated
- 2026-09-03 00:29:14
Antivirus detections
| Engine | Detection |
| ALYac | Gen:Variant.Trojan.KillMBR.125 |
| AVG | FileRepMalware [Inf] |
| AhnLab-V3 | Trojan/Win.Generic.C5662035 |
| Antiy-AVL | Trojan/Win32.Agent |
| Arcabit | Trojan.Trojan.KillMBR.125 |
| Avast | FileRepMalware [Inf] |
| Avira | HEUR/AGEN.1378113 |
| BitDefender | Gen:Variant.Trojan.KillMBR.125 |
| Bkav | W32.AIDetectMalware.CS |
| CTX | exe.trojan.killmbr |
| ClamAV | Win.Ransomware.Encoder-9982034-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.KillMBR.24964 |
| ESET-NOD32 | MSIL/TrojanDropper.Agent_AGen.AZ trojan |
| Elastic | malicious (high confidence) |
| Emsisoft | Gen:Variant.Trojan.KillMBR.125 (B) |
| F-Secure | Heuristic.HEUR/AGEN.1378113 |
| Fortinet | PossibleThreat |
| GData | Gen:Variant.Trojan.KillMBR.125 |
| Google | Detected |
| Ikarus | Trojan-Dropper.MSIL.Agent |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| Lionic | Trojan.Win32.Generic.4!c |
| Malwarebytes | Malware.AI.3547066902 |
| MaxSecure | Trojan.Malware.7164915.susgen |
| McAfeeD | ti!F75D2337BCF4 |
| Microsoft | Trojan:Win32/Egairtigado!rfn |
| NANO-Antivirus | Trojan.Win32.KillMBR.jyqjly |
| Paloalto | generic.ml |
| Panda | Trj/Chgt.AD |
| Rising | Dropper.Agent!8.2F (CLOUD) |
| Sangfor | Trojan.Win32.Killmbr.Vbpp |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | Artemis |
| Sophos | Mal/Generic-S |
| Symantec | ML.Attribute.HighConfidence |
| Tencent | Malware.Win32.Gencirc.13f077a0 |
| VBA32 | BScope.Trojan.KillMBR |
| VIPRE | Gen:Variant.Trojan.KillMBR.125 |
| Varist | W32/ABTrojan.BLYF-0866 |
| Zillya | Dropper.AgentAGen.Win32.459 |
| alibabacloud | Trojan:MSIL/KillMBR.AY |
| huorong | Trojan/MSIL.KillMBR.b |