2026-02-20_3bfa8b4c8bfe544888c80eb60b8d2900_coinminer_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee

Classification: Malicious

2026-02-20_3bfa8b4c8bfe544888c80eb60b8d2900_coinminer_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee is a malicious file sample.

Detection summary

  • 61 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Snojan Triage 2026-02-20 04:25:27 2026-02-20 04:25:27 malicious-activity

Tags

snojan discovery downloader upx

Sample information

Filenames
2026-02-20_3bfa8b4c8bfe544888c80eb60b8d2900_coinminer_elex_rhadamanthys_smoke-loader_stealc_stop_tofsee
MD5
3bfa8b4c8bfe544888c80eb60b8d2900
SHA-1
31a9bc56de4180568c1c2525efc63dea827d60ca
SHA-256
fd1c197b3a91590f2631b77ca6f9f5562fc2080a4ebf0aca852d1847092a1d0d
SHA-512
c4a7a8529d5f4a2326746e3df0f091ab243ea61c84621659ca00ce04034a8531ecd6e7ebcdd6e0ab4ac1521d32e5b4506d4d21f836a5620903171e51aadc43d0
First indexed
2026-02-20 04:25:27
Last updated
2026-09-03 00:32:04

Antivirus detections

EngineDetection
ALYacTrojan.Agent.CYZT
APEXMalicious
AVGWin32:Banker-LAA [Trj]
AhnLab-V3Downloader/Win.Generic.R665906
Antiy-AVLHackTool[Flooder]/Win32.CoreWarrior
ArcabitTrojan.Agent.CYZT
AvastWin32:Banker-LAA [Trj]
AviraTR/Crypt.ULPM.Gen2
BitDefenderTrojan.Agent.CYZT
BkavW32.AIDetectMalware
CAT-QuickHealTrojan.AgentbPMF.S33725804
CTXexe.trojan.corewarrior
ClamAVWin.Malware.Cymt-10023133-0
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
DrWebTool.Snojan.1
ESET-NOD32Win32/Agent.AAEF trojan
Elasticmalicious (moderate confidence)
EmsisoftTrojan.Agent.CYZT (B)
F-SecureTrojan.TR/Crypt.ULPM.Gen2
FortinetRiskware/Snojan
GDataWin32.Application.Snojan.A
GoogleDetected
IkarusTrojan.Agent
JiangminDownloader.Snojan.adp
K7AntiVirusTrojan ( 005c835f1 )
K7GWTrojan ( 005464da1 )
KasperskyUDS:Flooder.Win32.CoreWarrior.a
LionicHacktool.Win32.CoreWarrior.3!c
MalwarebytesGeneric.Malware/Suspicious
MaxSecureTrojan.Malware.300983.susgen
McAfeeDReal Protect-LS!3BFA8B4C8BFE
MicroWorld-eScanTrojan.Agent.CYZT
MicrosoftTrojan:Win32/CoreWarrior.DA!MTB
NANO-AntivirusTrojan.Win32.Snojan.jqzopm
Paloaltogeneric.ml
PandaTrj/Genetic.gen
RisingTrojan.Agent!1.B576 (CLOUD)
SangforSuspicious.Win32.Save.pkr
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.NetLoader.dc
SophosTroj/Bdoor-BHD
SymantecHacktool.Flooder
TencentTrojan.Win32.Corewarrior.ca
Trapminesuspicious.low.ml.score
TrellixENSArtemis!3BFA8B4C8BFE
TrendMicroTROJ_GEN.R002C0DBJ26
TrendMicro-HouseCallTROJ_GEN.R002C0DBJ26
VBA32Flooder.CoreWarrior
VIPRETrojan.Agent.CYZT
VaristW32/Agent.FBOO-5422
VirITTrojan.Win32.AgentT.DYK
WebrootWin.Trojan.Gen
XcitiumTrojWare.Win32.Snojan.B@7h1cjp
YandexRiskware.Flooder!j7BYbbJGLUM
ZillyaTool.CoreWarrior.Win32.18
ZoneAlarmTroj/Bdoor-BHD
alibabacloudDDoS:Win/Nemucod
huorongHVM:TrojanDownloader/Small.gen!A