SUSPICIOUS — 6167be94c33b2a86f9820cbc1b901700cf5d690193213cb14f44687dd4ed4e18.exe

SUSPICIOUS — 6167be94c33b2a86f9820cbc1b901700cf5d690193213cb14f44687dd4ed4e18.exe is a pe sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (64/100), attributed to the REvil family. 5 of 52 detection engines flagged it, exhibiting 1 ATT&CK technique.

Identification

Source: MalwareBazaar · first seen 2026-08-01T00:00:00.000Z · SHA-256 verified

Detections (5 of 52 engines)

MITRE ATT&CK

Why this verdict

The suspicious score of 64/100 is the fusion of 4 weighted signals:

Dynamic analysis

No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.

Embedded URLs

Embedded domains

Embedded IP addresses

File paths

More REvil samples · Latest analyzed threats · ATT&CK coverage

Analyzed on MalwareAnalyzer by Cyble · Open interactive report