29318f46476dc0cfd7b928a2861fea1b761496eb5d6a26040e481c3bd655051a
Classification: Malicious
29318f46476dc0cfd7b928a2861fea1b761496eb5d6a26040e481c3bd655051a is a malicious file sample. Linked to Oilrig activity. Detected by 28 antivirus engines.
Detection summary
- 28 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: OILRIG (G0049)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| OilRig | Maltiverse | 2023-04-28 04:48:35 | 2023-04-29 20:25:59 | malicious-activity | G0049 OilRig |
Tags
apt apt34Sample information
- SHA-256
29318f46476dc0cfd7b928a2861fea1b761496eb5d6a26040e481c3bd655051a- First indexed
- 2023-04-29 20:25:59
- Last updated
- 2025-11-24 03:24:05
Antivirus detections
| Engine | Detection |
|---|---|
| AVG | LNK:Agent-HV [Trj] |
| AhnLab-V3 | LNK/Autorun.Gen |
| Antiy-AVL | Trojan/LNK.Powecod |
| Arcabit | Heur.BZC.YAX.Boxter.950.7C4CF5BA [many] |
| Avast | LNK:Agent-HV [Trj] |
| Avira | LNK/Dropper.VPOO |
| BitDefender | Heur.BZC.YAX.Boxter.950.7C4CF5BA |
| Cynet | Malicious (score: 99) |
| ESET-NOD32 | LNK/TrojanDropper.Agent.DD |
| Emsisoft | Heur.BZC.YAX.Boxter.950.7C4CF5BA (B) |
| F-Secure | Malware.LNK/Dropper.VPOO |
| FireEye | Heur.BZC.YAX.Boxter.950.7C4CF5BA |
| Fortinet | LNK/Agent.E288!tr |
| GData | Heur.BZC.YAX.Boxter.950.7C4CF5BA |
| Detected | |
| Kaspersky | HEUR:Trojan.WinLNK.Powecod.c |
| Lionic | Trojan.ZIP.Powecod.4!c |
| MAX | malware (ai score=86) |
| MicroWorld-eScan | Heur.BZC.YAX.Boxter.950.7C4CF5BA |
| SentinelOne | Static AI - Suspicious Archive |
| Skyhigh | LNK/Agent-FYF!E138CB61A77B |
| Sophos | Troj/LnkDrop-M |
| Symantec | Trojan Horse |
| Tencent | Win32.Trojan.Powecod.Ltgl |
| TrendMicro | TROJ_FRS.0NA103DQ23 |
| TrendMicro-HouseCall | TROJ_FRS.0NA103DQ23 |
| VIPRE | Heur.BZC.YAX.Boxter.950.7C4CF5BA |
| ZoneAlarm | HEUR:Trojan.WinLNK.Powecod.c |