s2
--:--:--UTC

Searching APEX

Starting…

  1. ○ Searching Threats, IOCs & Threat Intelligence locally
  2. ○ Querying external providers
  3. ○ Asking AI Forensic Validator
  4. ○ Creating new entry from validated hit

0s elapsed

MB-efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669 high

📛 Threat Title

Unknown: efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669.exe

Category: Unknown Published: Source updated: First seen: Last updated: Source: Abuse.ch

Description

File type: exe. Size: 642618 bytes. Tags: exe, injector, trojan. Reporter: Kejult. First seen: 2026-09-25 11:28:46.

Indicators of Compromise (4)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

hash_sha256 efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669 VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669

IOC database

Type
hash_sha256
Value
efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Unknown

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669

hash_sha1 de4a0c9884f2ed953701645a3fb89efa9e4a3d9d VT: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/de4a0c9884f2ed953701645a3fb89efa9e4a3d9d

IOC database

Type
hash_sha1
Value
de4a0c9884f2ed953701645a3fb89efa9e4a3d9d
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

VirusTotal: VT base fetch failed: HTTPError: 401 Client Error: Unauthorized for url: https://www.virustotal.com/api/v3/files/de4a0c9884f2ed953701645a3fb89efa9e4a3d9d

hash_md5 55ba25ea6b060f6487ad8e8aaf34f6c6 VT 43 / 75

IOC database

Type
hash_md5
Value
55ba25ea6b060f6487ad8e8aaf34f6c6
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 43 of 75 VirusTotal vendors

VendorVerdictDetection
AhnLab-V3 malicious Trojan/Win.Generic.C5949058
alibabacloud malicious Trojan:Win/Wacatac.B9nj
Antiy-AVL malicious Trojan/Win64.Kryptik
APEX malicious Malicious
Arcabit malicious Trojan.GenericFCA.D36B6
Avast malicious Win64:MalwareX-gen [Cryp]
AVG malicious Win64:MalwareX-gen [Cryp]
Avira malicious TR/W64.MalwareX
BitDefender malicious Trojan.GenericFCA.14006
Bkav malicious W32.Malware.DABCB05C
CrowdStrike malicious win/malicious_confidence_100% (D)
CTX malicious exe.trojan.kryptik
Cylance malicious Unsafe
Cynet malicious Malicious (score: 99)
DeepInstinct malicious MALICIOUS
DrWeb malicious Trojan.DownLoader50.23888
Elastic malicious malicious (high confidence)
Emsisoft malicious Trojan.GenericFCA.14006 (B)
ESET-NOD32 malicious Win64/Kryptik.HPF trojan
F-Secure malicious Trojan.TR/W64.MalwareX
Fortinet malicious W64/Kryptik.HPF!tr
GData malicious Trojan.GenericFCA.14006
Google malicious Detected
Gridinsoft malicious Trojan.Win64.Kryptik.oa!s1
Lionic malicious Trojan.Win32.GenericFCA.4!c
Malwarebytes malicious Trojan.Injector
MaxSecure malicious Trojan.Malware.722058176.susgen
McAfeeD malicious ti!EFD9C53CBBEC
Microsoft malicious Trojan:Win32/Ravartar!rfn
MicroWorld-eScan malicious Trojan.GenericFCA.14006
Paloalto malicious generic.ml
Panda malicious Trj/PhxGD.A
Rising malicious Trojan.Kryptik!8.8 (CLOUD)
Sangfor malicious Trojan.Win64.Kryptik.V8yr
SentinelOne malicious Static AI - Suspicious PE
Sophos malicious Mal/Generic-S
Symantec malicious ML.Attribute.HighConfidence
Tencent malicious Win32.Trojan.W64.Gwnw
TrellixENS malicious Artemis!55BA25EA6B06
TrendMicro malicious Trojan.Win64.KRYPTIK.USBLIO26
TrendMicro-HouseCall malicious Trojan.Win64.KRYPTIK.USBLIO26
Varist malicious W64/ABTrojan.MBAD-9134
VIPRE malicious Trojan.GenericFCA.14006

Details From VirusTotal

Basic Properties
MD555ba25ea6b060f6487ad8e8aaf34f6c6
SHA-1de4a0c9884f2ed953701645a3fb89efa9e4a3d9d
SHA-256efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669
VHash065086655d155d1515555az623z3hz5fz
SSDEEP12288:NOvv+ri6oFUuKXZFK3Y+prIXW26CQdBQXkDFfEjWaYS5whKv9TsC+usW:NHvrZF7fsuXkR8jl5w6TsWL
TLSHT1C1D4E028FDAC40E5D025CE3FC2791601AB65F6225B31EEDB067806513D22BBD5D3EB82
File typeWin32 EXE
File type tagpeexe
File extensionexe
MagicPE32+ executable (GUI) x86-64, for MS Windows
File size627.6 KB
History
Creation date2026-08-30 15:46 UTC
First seen on VirusTotal2026-09-23 16:44 UTC
Last submission2026-09-25 12:15 UTC
Last analysis2026-09-25 20:01 UTC
Last modified on VirusTotal2026-09-25 22:22 UTC
Known Names
  • hosku.exe
  • u7vc2.exe
  • v6m9r8.exe
  • efd9c53cbbec73120a2bbf16c553d5439356876f997a890888cb4e87389b8669.exe
hash_imphash 004340d8729cb4da47fce53d7da3c842

IOC database

Type
hash_imphash
Value
004340d8729cb4da47fce53d7da3c842
First seen
Last seen
Attached to this threat
Appears in
1 threat

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Details From VirusTotal

No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.

References (1)

  • MalwareBazaar sample page Abuse.ch

    File type: exe. Size: 642618 bytes. Tags: exe, injector, trojan. Reporter: Kejult. First seen: 2026-09-25 11:28:46.

Remediations (10)

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.