166b0c5e49c44f87886ecaad46e60b496b6b7512d1c57db41d9cf752fada95c8.bin
Classification: Malicious
166b0c5e49c44f87886ecaad46e60b496b6b7512d1c57db41d9cf752fada95c8.bin is a malicious file sample. Linked to Fin7 activity. Detected by 44 antivirus engines.
Detection summary
- 44 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: FIN7 (G0046)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic.Malware | Abuse.ch | 2021-05-18 14:45:28 | 2021-05-18 14:45:28 | malicious-activity | |
| FIN7 | Abuse.ch | 2021-05-18 14:45:28 | 2021-05-18 14:45:28 | malicious-activity | G0046 FIN7 |
Sample information
- Filenames
- 166b0c5e49c44f87886ecaad46e60b496b6b7512d1c57db41d9cf752fada95c8.bin
- File type
- application/x-dosexec
- MD5
b708951d4e217b47d899279d772aaafe- SHA-1
5d51fa1f2d2286e53eb03cc503fff3839da45f0d- SHA-256
166b0c5e49c44f87886ecaad46e60b496b6b7512d1c57db41d9cf752fada95c8- First indexed
- 2021-05-18 17:15:10
- Last updated
- 2025-10-14 05:53:15
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | Gen:Variant.Razy.799918 |
| ALYac | Trojan.Agent.DiceLoader |
| Cylance | Unsafe |
| AegisLab | Hacktool.Win32.Inject.3!c |
| Sangfor | Hacktool.Win32.Inject.heur |
| CrowdStrike | win/malicious_confidence_80% (W) |
| Alibaba | Trojan:Win32/Inject.dcbfa36d |
| K7GW | Riskware ( 0040eff71 ) |
| K7AntiVirus | Riskware ( 0040eff71 ) |
| Cyren | W32/Trojan.YEGI-5179 |
| Symantec | ML.Attribute.HighConfidence |
| ESET-NOD32 | a variant of Win32/Agent.ACZO |
| APEX | Malicious |
| Kaspersky | UDS:HackTool.Win32.Inject.heur |
| BitDefender | Gen:Variant.Razy.799918 |
| NANO-Antivirus | Trojan.Win32.Inject.iuvbtw |
| Avast | Win32:MalwareX-gen [Trj] |
| Ad-Aware | Gen:Variant.Razy.799918 |
| Sophos | Mal/Generic-R + Mal/Swrort-L |
| VIPRE | Trojan.Win32.Generic!BT |
| TrendMicro | TROJ_GEN.R002C0RDL21 |
| McAfee-GW-Edition | RDN/Generic PUP.z |
| FireEye | Generic.mg.b708951d4e217b47 |
| Emsisoft | Gen:Variant.Razy.799918 (B) |
| Ikarus | Trojan.Win32.Agent |
| GData | Gen:Variant.Razy.799918 |
| Webroot | W32.Malware.Gen |
| Gridinsoft | Trojan.Win32.DiceLoader.dd!s1 |
| Arcabit | Trojan.Razy.DC34AE |
| Microsoft | Trojan:Win32/Tiggre!rfn |
| Cynet | Malicious (score: 100) |
| AhnLab-V3 | Malware/Win.Generic.R417070 |
| McAfee | RDN/Generic PUP.z |
| MAX | malware (ai score=89) |
| VBA32 | suspected of Trojan.Downloader.gen |
| TrendMicro-HouseCall | TROJ_GEN.R002C0RDL21 |
| Rising | Trojan.Agent!8.B1E (CLOUD) |
| Yandex | Trojan.Agent!tm9H9vN7rvk |
| MaxSecure | Trojan.Malware.10455307.susgen |
| Fortinet | Riskware/Inject.HEUR |
| BitDefenderTheta | Gen:NN.ZedlaF.34690.aq4@aanG4ih |
| AVG | Win32:MalwareX-gen [Trj] |
| Panda | Trj/GdSda.A |