SecuriteInfo.com.Riskware.00584baa1.7035.19406

Classification: Malicious

SecuriteInfo.com.Riskware.00584baa1.7035.19406 is a malicious file sample. Linked to Megacortex malware. Reported by 2 threat sources, last seen 2024-05-11.

Detection summary

  • 7 antivirus detections
  • 0 IDS alerts
  • 1 processes observed
  • 15 contacted hosts
  • 6 DNS requests

MITRE ATT&CK associations

Malware families: MEGACORTEX (S0576)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
MegaCortex ThreatFox Abuse.ch 2024-05-09 16:55:05 2024-05-11 16:20:55 S0576 MegaCortex
Generic Malware Hybrid-Analysis 2024-05-09 12:30:04 2024-05-09 13:30:07

Tags

evasive win.megacortex

Sample information

Filenames
SecuriteInfo.com.Riskware.00584baa1.7035.19406
File type
PE32 executable (GUI) Intel 80386, for MS Windows, ...
Size
1325632 bytes
MD5
5589728917e2c441a0b277d8048dea99
SHA-1
28d60f957570983336dfc6fd05c6be54bab43fa1
SHA-256
ffa291b7deb01d6a42d6997765848e0340bf5177746de01d275f843cdea864aa
First indexed
2024-05-09 12:22:50
Last updated
2026-02-05 03:48:41

Antivirus detections

EngineDetection
Antiy-AVLTrojan/Win32.Agent
BkavW32.AIDetectMalware
GridinsoftTrojan.Win32.Gen.oa!s2
JiangminTrojan.PSW.Stelega.gj
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
Trapminemalicious.moderate.ml.score

Network contacts

142.215.208.235 142.215.208.231 78.140.180.43 117.20.41.198 47.91.24.164 88.212.232.132 147.139.41.121 156.38.206.21 177.154.156.125 102.68.85.100 27.111.161.152 195.201.80.82 66.203.112.227 199.254.199.227 47.91.106.176

DNS requests

api12.mql5.net api14.mql5.net api9.mql5.net content.finteza.com content.mql5.com download.mql5.com

Process list

NameCommand line
SecuriteInfo.com.Riskware.00584baa1.7035.19406.exe