Snake Keylogger - Detection Rate

VirusTotal detection statistics across 62 analyzed samples.

Last updated: 2026-08-15

Detection rates show how many antivirus engines on VirusTotal identify Snake Keylogger samples as malicious. A high detection rate (30+ engines) means most AV vendors have signatures for the variant. Low or zero detection indicates recently packed or obfuscated samples that may bypass signature-based endpoint protection.

Why Detection Rate Matters

For SOC analysts and threat hunters, detection rate is a key indicator of variant freshness and evasion capability. When Snake Keylogger operators release a new build with updated packing or obfuscation, detection rates drop temporarily until AV vendors update their signatures. This window of low detection is when organizations are most vulnerable. Monitoring this page helps you understand how well your current defenses cover Snake Keylogger variants.

Recommended Actions

If you see undetected or low-detection samples, consider submitting them to your sandbox for behavioral analysis. Update your YARA rules to catch Snake Keylogger patterns that signature-based detection misses. For the latest sample hashes to cross-reference, visit the Snake Keylogger samples page. For network-level indicators, check the IOC page.

35/63
Avg Detection
62
Samples Analyzed
31
High Detection
0
Undetected

Detection Distribution

High (30+) 31 (50%)
Medium (15-29) 24 (39%)
Low (1-14) 7 (11%)
Undetected (0) 0 (0%)

Per-Sample Detection

SHA256 Detection Threat Name
62d45c2346c9751e... 59/69 trojan.msil/chaos
db4426920fe2de2b... 58/70 trojan.msil/bplogger
ce0e09e88dd736d2... 56/70 trojan.msil/passwordstealer
b4991986b29c3882... 56/69 trojan.msil/vipkeylogger
6e2c7b90b921e3a7... 55/71 trojan.msil/powershell
803d6aeb37985741... 55/70 trojan.msil/injuke
348237414eee4aa4... 54/71 trojan.msil/remcos
b6a901fba50ca305... 54/69 trojan.msil/formbook
6f156b9664a0f933... 53/71 trojan.msil/cryp
475134fd1bd6af31... 53/71 trojan.autoit/scrop
84e6f00fa7997051... 53/70 trojan.msil/noon
d0285d9b5584f7af... 53/69 trojan.msil/zusy
d7234ff3482f7559... 52/70 trojan.msil/noon
c95048957b30f210... 52/68 trojan.msil/noon
a0ae3275aed9137a... 51/68 trojan.autoit/auitinj
609c95b0b3d7ced9... 51/70 trojan.killav/negasteal
fa8bed9286024914... 50/72 trojan.msil/genie
28e6160a0c931d07... 50/66 trojan.autoit/scrop
5c1525ef7994d3a6... 50/69 trojan.msil/stealer
970d178fff5e535e... 50/69 trojan.msil/agensla
d6c16e5772a95542... 49/60 trojan.msil/passwordstealer
b7558d75d5cb4d8b... 49/63 trojan.msil/formbook
8ceb2c538d49fe52... 48/63 trojan.msil/xworm
a9de89f097322550... 46/64 trojan.msil/formbook
1741fe897473e7b6... 45/63 trojan.msil/darkcloud
e9a3825e87a0b0a5... 44/65 trojan.msil/formbook
589ad55861e3bbb4... 42/61 trojan.msil/spynoon
c363e567a04e86db... 42/66 trojan.msil/gen2
69c218ebccd88de6... 40/59 trojan.msil/formbook
2263046083f6f559... 36/70 trojan.msil/agensla
8a93756d5216c939... 34/66 trojan.mathtype/obfs
79e6b2c3d0105007... 29/72 trojan.msil/snakelogger
be06aab9e611d76a... 29/69 trojan.dacic
3c0e37848febb8c1... 29/60 trojan.cryxos/sagent
b9552a61439efa4f... 28/62 trojan.cobalt
889ae5f08236631f... 28/60 trojan.formbook/abmrisk
9c82c1e7da113f20... 27/55 trojan.formbook/agenttesla
aadfe021f937eddb... 26/43 trojan.msil/formbook
e101122360c065fa... 26/60 trojan.agenttesla/malgent
beda1b9bca0445fe... 26/61 trojan.acsogenixx/ehz4
2525aba3aa0c6896... 25/61 trojan.
70b8e9cd74923561... 25/66 trojan.msil/krypt
bf02bd3f34a3f952... 25/55 trojan.sonbokli/agenttesla
914a06741e5c1a02... 24/60 trojan.formbook/abmrisk
88d63b0589f9ccb2... 23/62 trojan.acsogenixx/adyg
bbe37ae6c1d6534d... 22/61 trojan.powershell/injectornett
7d90636465939a1a... 22/69 trojan.dllhijack
858fc71f47e43fa0... 21/50 trojan.snakekeylogger/etecer
89eba8a1f75790aa... 21/45 trojan.sonbokli/agenttesla
419b24867a2cdba9... 20/63 trojan.boxter/powershell