16c6558634759e6efd4581de60cc2050d99a53245c6abde3d38fc140204777e9
Classification: Malicious
16c6558634759e6efd4581de60cc2050d99a53245c6abde3d38fc140204777e9 is a malicious file sample. Linked to Earth Lusca activity. Detected by 53 antivirus engines.
Detection summary
- 53 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: EARTH LUSCA (G1006)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Earth Lusca | Maltiverse | 2023-08-19 05:11:12 | 2023-08-20 21:20:28 | malicious-activity | G1006 Earth Lusca |
| Calypso | Maltiverse | 2023-08-19 05:11:12 | 2023-08-20 21:20:25 | malicious-activity |
Tags
aptSample information
- SHA-256
16c6558634759e6efd4581de60cc2050d99a53245c6abde3d38fc140204777e9- First indexed
- 2023-08-20 21:20:25
- Last updated
- 2025-10-27 22:59:51
Antivirus detections
| Engine | Detection |
|---|---|
| Bkav | W32.Common.F01CB7A1 |
| Lionic | Trojan.Win32.Dllhijacker.4!c |
| MicroWorld-eScan | Gen:Variant.Tedy.256331 |
| FireEye | Gen:Variant.Tedy.256331 |
| ALYac | Backdoor.Agent.ShadowPad |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Alibaba | Trojan:Win64/Dllhijacker.d82c2f19 |
| Symantec | Meterpreter |
| ESET-NOD32 | Win64/Agent.BYN |
| Kaspersky | Trojan.Win64.Dllhijacker.ml |
| BitDefender | Gen:Variant.Tedy.256331 |
| ViRobot | Trojan.Win32.S.Undef.187392 |
| Avast | Win64:MalwareX-gen [Trj] |
| Sophos | Mal/Generic-S |
| VIPRE | Gen:Variant.Tedy.256331 |
| TrendMicro | Backdoor.Win64.SHADOWPAD.AS |
| McAfee-GW-Edition | Artemis |
| Emsisoft | Gen:Variant.Tedy.256331 (B) |
| GData | Gen:Variant.Tedy.256331 |
| Antiy-AVL | Trojan/Win64.Dllhijacker |
| Arcabit | Trojan.Tedy.D3E94B |
| ZoneAlarm | Trojan.Win64.Dllhijacker.ml |
| Microsoft | Trojan:Win32/Casdet!rfn |
| AhnLab-V3 | Trojan/Win.Hijack.R536779 |
| McAfee | Artemis!5C4A81BAC072 |
| MAX | malware (ai score=80) |
| Cylance | unsafe |
| Panda | Trj/CI.A |
| TrendMicro-HouseCall | Backdoor.Win64.SHADOWPAD.AS |
| Rising | Trojan.Dllhijacker!8.ABDA (CLOUD) |
| Fortinet | W32/FRS.VSNTKU22!tr |
| AVG | Win64:MalwareX-gen [Trj] |
| DeepInstinct | MALICIOUS |
| Alibaba | Trojan:Win64/Dllhijacker.19ba9058 |
| CAT-QuickHeal | Trojan.Ghanarava.17051834840ab573 |
| CTX | dll.trojan.dllhijacker |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DrWeb | BackDoor.ShadowPad.47 |
| Detected | |
| Ikarus | Trojan.Win64.Agent |
| K7AntiVirus | Trojan ( 005ab2e11 ) |
| K7GW | Trojan ( 005ab2e11 ) |
| Kingsoft | Win32.Troj.Unknown.a |
| MaxSecure | Trojan.Malware.124430950.susgen |
| McAfee | RDN/Generic.dx |
| McAfeeD | ti!16C655863475 |
| Microsoft | Trojan:Win32/Emotet!ml |
| Skyhigh | RDN/Generic.dx |
| Tencent | Malware.Win32.Gencirc.13ea2dee |
| Varist | W64/Msil.MIP |
| Zillya | Trojan.Agent.Win64.36704 |
| alibabacloud | Trojan:Win/Dllhijacker.mf |