29318f46476dc0cfd7b928a2861fea1b761496eb5d6a26040e481c3bd655051a

Classification: Malicious

29318f46476dc0cfd7b928a2861fea1b761496eb5d6a26040e481c3bd655051a is a malicious file sample. Linked to Oilrig activity. Detected by 28 antivirus engines.

Detection summary

  • 28 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Intrusion sets: OILRIG (G0049)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
OilRig Maltiverse 2023-04-28 04:48:35 2023-04-29 20:25:59 malicious-activity G0049 OilRig

Tags

apt apt34

Sample information

SHA-256
29318f46476dc0cfd7b928a2861fea1b761496eb5d6a26040e481c3bd655051a
First indexed
2023-04-29 20:25:59
Last updated
2025-11-24 03:24:05

Antivirus detections

EngineDetection
AVGLNK:Agent-HV [Trj]
AhnLab-V3LNK/Autorun.Gen
Antiy-AVLTrojan/LNK.Powecod
ArcabitHeur.BZC.YAX.Boxter.950.7C4CF5BA [many]
AvastLNK:Agent-HV [Trj]
AviraLNK/Dropper.VPOO
BitDefenderHeur.BZC.YAX.Boxter.950.7C4CF5BA
CynetMalicious (score: 99)
ESET-NOD32LNK/TrojanDropper.Agent.DD
EmsisoftHeur.BZC.YAX.Boxter.950.7C4CF5BA (B)
F-SecureMalware.LNK/Dropper.VPOO
FireEyeHeur.BZC.YAX.Boxter.950.7C4CF5BA
FortinetLNK/Agent.E288!tr
GDataHeur.BZC.YAX.Boxter.950.7C4CF5BA
GoogleDetected
KasperskyHEUR:Trojan.WinLNK.Powecod.c
LionicTrojan.ZIP.Powecod.4!c
MAXmalware (ai score=86)
MicroWorld-eScanHeur.BZC.YAX.Boxter.950.7C4CF5BA
SentinelOneStatic AI - Suspicious Archive
SkyhighLNK/Agent-FYF!E138CB61A77B
SophosTroj/LnkDrop-M
SymantecTrojan Horse
TencentWin32.Trojan.Powecod.Ltgl
TrendMicroTROJ_FRS.0NA103DQ23
TrendMicro-HouseCallTROJ_FRS.0NA103DQ23
VIPREHeur.BZC.YAX.Boxter.950.7C4CF5BA
ZoneAlarmHEUR:Trojan.WinLNK.Powecod.c