SecuriteInfo.com.Riskware.00584baa1.7035.19406
Classification: Malicious
SecuriteInfo.com.Riskware.00584baa1.7035.19406 is a malicious file sample. Linked to Megacortex malware. Reported by 2 threat sources, last seen 2024-05-11.
Detection summary
- 7 antivirus detections
- 0 IDS alerts
- 1 processes observed
- 15 contacted hosts
- 6 DNS requests
MITRE ATT&CK associations
Malware families: MEGACORTEX (S0576)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| MegaCortex | ThreatFox Abuse.ch | 2024-05-09 16:55:05 | 2024-05-11 16:20:55 | S0576 MegaCortex | |
| Generic Malware | Hybrid-Analysis | 2024-05-09 12:30:04 | 2024-05-09 13:30:07 |
Tags
evasive win.megacortexSample information
- Filenames
- SecuriteInfo.com.Riskware.00584baa1.7035.19406
- File type
- PE32 executable (GUI) Intel 80386, for MS Windows, ...
- Size
- 1325632 bytes
- MD5
5589728917e2c441a0b277d8048dea99- SHA-1
28d60f957570983336dfc6fd05c6be54bab43fa1- SHA-256
ffa291b7deb01d6a42d6997765848e0340bf5177746de01d275f843cdea864aa- First indexed
- 2024-05-09 12:22:50
- Last updated
- 2026-02-05 03:48:41
Antivirus detections
| Engine | Detection |
|---|---|
| Antiy-AVL | Trojan/Win32.Agent |
| Bkav | W32.AIDetectMalware |
| Gridinsoft | Trojan.Win32.Gen.oa!s2 |
| Jiangmin | Trojan.PSW.Stelega.gj |
| K7AntiVirus | Riskware ( 00584baa1 ) |
| K7GW | Riskware ( 00584baa1 ) |
| Trapmine | malicious.moderate.ml.score |
Network contacts
142.215.208.235 142.215.208.231 78.140.180.43 117.20.41.198 47.91.24.164 88.212.232.132 147.139.41.121 156.38.206.21 177.154.156.125 102.68.85.100 27.111.161.152 195.201.80.82 66.203.112.227 199.254.199.227 47.91.106.176
DNS requests
api12.mql5.net api14.mql5.net api9.mql5.net content.finteza.com content.mql5.com download.mql5.com
Process list
| Name | Command line |
|---|---|
| SecuriteInfo.com.Riskware.00584baa1.7035.19406.exe | |