1.dll
Classification: Malicious
1.dll is a malicious file sample. Linked to Bazar malware. Reported by 1 threat source, last seen 2021-10-13. Detected by 38 antivirus engines.
Detection summary
- 38 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: BAZAR (S0534)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| BazaLoader | Abuse.ch | 2021-10-13 09:30:07 | 2021-10-13 09:30:07 | malicious-activity | S0534 Bazar |
Sample information
- Filenames
- 1.dll
- File type
- application/x-dosexec
- MD5
efad3e8098fdc4778d1744abb659fb04- SHA-1
90e28ff7cc0cc20ae2f10652f9ffda01107470ed- SHA-256
081409dbf0464baad30442d3f8cea67c885e15e438b0f6dbf9c64da67620eaa1- First indexed
- 2021-10-13 10:15:15
- Last updated
- 2026-05-30 11:34:43
Antivirus detections
| Engine | Detection |
|---|---|
| Lionic | Trojan.Win32.Agent.4!c |
| MicroWorld-eScan | Trojan.GenericKD.47164559 |
| FireEye | Trojan.GenericKD.47164559 |
| McAfee | RDN/Generic BackDoor |
| Cylance | Unsafe |
| Sangfor | Trojan.Win32.Agent.xaizpt |
| K7AntiVirus | Trojan ( 00588d091 ) |
| Alibaba | Backdoor:Win64/Kryptik.8150f7aa |
| K7GW | Trojan ( 00588d091 ) |
| Cyren | W64/Kryptik.FMQ.gen!Eldorado |
| ESET-NOD32 | a variant of Win64/Kryptik.CRE |
| TrendMicro-HouseCall | TROJ_FRS.VSNW0DJ21 |
| Paloalto | generic.ml |
| Kaspersky | Trojan.Win32.Agent.xaizpt |
| BitDefender | Trojan.GenericKD.47164559 |
| Tencent | Win32.Trojan.Agent.Aoth |
| Ad-Aware | Trojan.GenericKD.47164559 |
| Emsisoft | Trojan.GenericKD.47164559 (B) |
| Comodo | TrojWare.Win32.Agent.clour@0 |
| DrWeb | BackDoor.Siggen2.3608 |
| McAfee-GW-Edition | BehavesLike.Win64.Generic.hh |
| Sophos | Mal/Generic-S |
| Ikarus | Trojan.Win64.Crypt |
| GData | Win64.Trojan.Agent.K6DQOS |
| Webroot | W32.Trojan.Gen |
| Avira | TR/Kryptik.bpoll |
| MAX | malware (ai score=84) |
| Kingsoft | Win32.Troj.Agent.(kcloud) |
| Arcabit | Trojan.Generic.D2CFAC8F |
| Microsoft | Backdoor:Win64/CobaltStrike.BN!dha |
| Cynet | Malicious (score: 99) |
| AhnLab-V3 | Trojan/Win.Generic.R444958 |
| ALYac | Trojan.GenericKD.47164559 |
| Malwarebytes | Trojan.Crypt |
| Avast | Win64:TrojanX-gen [Trj] |
| Yandex | Trojan.Agent!MkWjh+bqo7g |
| Fortinet | W64/Kryptik.CRE!tr |
| AVG | Win64:TrojanX-gen [Trj] |