Classification: Malicious
P.O.scr.exe is a malicious file sample. Reported by 1 threat source, last seen 2025-10-07. Detected by 69 antivirus engines.
Detection summary
- 69 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic.Malware |
MalwareBazaar Abuse.ch |
2025-10-07 19:18:56 |
2025-10-07 19:18:56 |
malicious-activity
|
|
| XRed |
MalwareBazaar Abuse.ch |
2025-10-07 19:18:56 |
2025-10-07 19:18:56 |
malicious-activity
|
|
Sample information
- Filenames
- P.O.scr.exe
- File type
- exe
- MD5
2c33ac3d486cc86a54a4f62f846b0a4a
- SHA-1
11dc7ce98b52f18196b90f6b8465789993efdb0f
- SHA-256
fd5de75c019f00e5d890e5dca32e3dd0a70400679094f5e61db51d41bc76e423
- First indexed
- 2025-10-07 19:18:56
- Last updated
- 2026-09-03 01:00:35
Antivirus detections
| Engine | Detection |
| APEX | Malicious |
| AVG | FileRepMalware [Pws] |
| Avast | FileRepMalware [Pws] |
| Bkav | W32.AIDetectMalware.CS |
| CTX | exe.trojan.msil |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| Elastic | malicious (high confidence) |
| Fortinet | MSIL/Remcos.GWMJE!tr |
| Google | Detected |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| Lionic | Trojan.Win32.Taskun.4!c |
| Malwarebytes | MachineLearning/Anomalous.100% |
| McAfeeD | ti!FD5DE75C019F |
| Microsoft | Trojan:Win32/Kepavll!rfn |
| Paloalto | generic.ml |
| Rising | Malware.Obfus/[email protected] (RDM.MSIL2:vQCk12Ou4kNbAHvyOsSZMA) |
| Sangfor | Trojan.Msil.Agent.Vb8t |
| SentinelOne | Static AI - Suspicious PE |
| Skyhigh | BehavesLike.Win32.Generic.tc |
| Sophos | Troj/Krypt-ABH |
| Symantec | MSIL.Packed.19 |
| TrellixENS | Artemis!2C33AC3D486C |
| ZoneAlarm | Troj/Krypt-AQM |
| ALYac | Trojan.GenericKD.77503891 |
| AVG | Win32:MalwareX-gen [Pws] |
| AhnLab-V3 | Trojan/Win.Generic.C5803826 |
| Alibaba | TrojanSpy:MSIL/XWorm.9f28ed35 |
| Arcabit | Trojan.Generic.D49E9D93 |
| Avast | Win32:MalwareX-gen [Pws] |
| Avira | TR/AD.RedLineSteal.ltgrc |
| BitDefender | Trojan.GenericKD.77503891 |
| CAT-QuickHeal | Trojan.Ghanarava.17626756336b0a4a |
| DrWeb | Trojan.Packed2.50433 |
| ESET-NOD32 | MSIL/Kryptik.AOOI trojan |
| Emsisoft | Trojan.GenericKD.77503891 (B) |
| F-Secure | Trojan.TR/AD.RedLineSteal.ltgrc |
| Fortinet | MSIL/Formbook.GWMJE!tr |
| GData | Trojan.GenericKD.77503891 |
| Ikarus | Trojan.MSIL.Inject |
| K7AntiVirus | Trojan ( 005d5f371 ) |
| K7GW | Spyware ( 005ce51e1 ) |
| Kaspersky | HEUR:Trojan-Spy.MSIL.Noon.gen |
| Kingsoft | Win32.Troj.Unknown.a |
| Lionic | Trojan.Win32.Noon.l!c |
| Malwarebytes | Trojan.MalPack.PNG |
| MaxSecure | Trojan.Malware.326482172.susgen |
| McAfeeD | Trojan:Win/GenericPack.BMP |
| MicroWorld-eScan | Trojan.GenericKD.77503891 |
| Microsoft | Trojan:MSIL/VIPKeylogger.ZAK!MTB |
| Panda | Trj/GdSda.A |
| Rising | Trojan.Kryptik!1.139DE (CLASSIC) |
| Sangfor | Spyware.Msil.Noon.Vp60 |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | Artemis!Trojan |
| Tencent | Backdoor.Win32.Loader.16002414 |
| TrendMicro | TROJ_GEN.R002C0DJ925 |
| TrendMicro-HouseCall | TROJ_GEN.R002C0DJ925 |
| VBA32 | TScope.Trojan.MSIL |
| VIPRE | Trojan.GenericKD.77503891 |
| Varist | W32/MSIL_Kryptik.MSZ.gen!Eldorado |
| VirIT | Trojan.Win32.GenusT.FIAB |
| Webroot | W32.Malware.gen |
| Xcitium | Malware@#6xj1jqcfr7tf |
| Yandex | Trojan.Kryptik!GzqyOPFjZPg |
| Zillya | Trojan.Kryptik.Win32.5522282 |
| alibabacloud | Trojan[spy]:MSIL/Kepavll.Gen |
| huorong | TrojanSpy/Noon.h |