poad2_4QJ_Sl__(31).cmd
Classification: Malicious
poad2_4QJ_Sl__(31).cmd is a malicious file sample. Linked to Metamorfo malware. Reported by 1 threat source, last seen 2022-05-13.
Detection summary
- 13 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: METAMORFO (S0455)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Metamorfo | MalwareBazaar Abuse.ch | 2022-05-13 04:26:48 | 2022-05-13 04:26:48 | malicious-activity | S0455 Metamorfo |
| Generic.Malware | MalwareBazaar Abuse.ch | 2022-05-13 04:26:48 | 2022-05-13 04:26:48 | malicious-activity |
Sample information
- Filenames
- poad2_4QJ_Sl__(31).cmd
- File type
- text/x-msdos-batch
- MD5
2331fcdbd610a0ced282fb8a50374644- SHA-1
4d5f604bfc6b78d04c2fe2eaa415db7a3a8963f3- SHA-256
203c5fddce2357d1ca99d3a5e1296d9f838b1e35794eb90d6fabb9499dfd1376- First indexed
- 2022-05-13 06:15:05
- Last updated
- 2025-11-25 19:20:51
Antivirus detections
| Engine | Detection |
|---|---|
| Sangfor | Trojan.Generic-BAT.Save.a7d78472 |
| Symantec | Trojan.Gen.MBT |
| ESET-NOD32 | PowerShell/TrojanDownloader.Agent.DGL |
| Avast | VBS:Downloader-BEU [Trj] |
| Kaspersky | HEUR:Trojan.BAT.Generic |
| Tencent | Win32.Trojan-downloader.Agent.Hoej |
| Ikarus | Trojan-Downloader.PowerShell.Agent |
| GData | BAT.Trojan-Downloader.Agent.BER |
| ZoneAlarm | HEUR:Trojan.BAT.Generic |
| Microsoft | Trojan:Script/Wacatac.B!ml |
| Rising | Downloader.PowerShell/BAT!1.C705 (CLASSIC) |
| Fortinet | PowerShell/Agent.DGL!tr |
| AVG | VBS:Downloader-BEU [Trj] |