2ade1ac8911ad6a23498230a5e119516db47f6e76687f804e2512cc9bcfda2b0.dll

Classification: Malicious

2ade1ac8911ad6a23498230a5e119516db47f6e76687f804e2512cc9bcfda2b0.dll is a malicious file sample. Linked to Sunburst malware. Detected by 57 antivirus engines.

Detection summary

  • 57 antivirus detections (51% detection ratio)
  • 0 IDS alerts
  • 4 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: SUNBURST (S0559)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Hybrid-Analysis 2025-03-28 03:00:06 2025-03-28 04:15:17
Generic.Malware Abuse.ch 2020-12-27 05:49:00 2020-12-27 05:49:00 malicious-activity
SUNBURST Abuse.ch 2020-12-27 05:49:00 2020-12-27 05:49:00 malicious-activity S0559 SUNBURST
Generic.Sunburst.2 Hybrid-Analysis 2020-12-17 16:00:17 2020-12-17 16:00:17

Sample information

Filenames
2ade1ac8911ad6a23498230a5e119516db47f6e76687f804e2512cc9bcfda2b0.dll, tmpwfi0uyqe, SolarWinds.Orion.Core.BusinessLayer.dll
File type
application/x-dosexec
Size
1028072 bytes
MD5
f492697f34c9885035295abdf46acce0
SHA-1
cba7a712bf00b94f1cea4c476a12ce41e9c40333
SHA-256
2ade1ac8911ad6a23498230a5e119516db47f6e76687f804e2512cc9bcfda2b0
First indexed
2020-12-17 16:00:17
Last updated
2026-07-10 21:41:56

Antivirus detections

EngineDetection
ALYacTrojan.MSIL.SunBurst
AVGMSIL:SunBurst-C [Bd]
AhnLab-V3Backdoor/Win32.SunBurst.R357806
Antiy-AVLTrojan/MSIL.SunBurst
ArcabitTrojan.Sunburst.E
AvastMSIL:SunBurst-C [Bd]
AviraHEUR/AGEN.1300870
BitDefenderTrojan.Sunburst.E
BkavW32.AIDetectMalware.CS
CAT-QuickHealBackdoor.Sunburst.S17554866
CTXdll.trojan.sunburst
ClamAVWin.Countermeasure.Sunburst-9809152-0
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebBackDoor.SiggenNET.14
ESET-NOD32a variant of MSIL/SunBurst.A
Elasticmalicious (high confidence)
EmsisoftTrojan.Sunburst.E (B)
F-SecureTrojan:W32/Sunburst.F
FireEyeGeneric.mg.f492697f34c98850
FortinetW32/Sunburst.A!tr
GDataTrojan.Sunburst.E
GoogleDetected
IkarusTrojan.MSIL.Sunburst
JiangminBackdoor.MSIL.eafu
K7AntiVirusTrojan ( 00574b2b1 )
K7GWTrojan ( 00574b2b1 )
KasperskyHEUR:Backdoor.MSIL.SunBurst.gen
LionicTrojan.MSIL.SunBurst.trD4
MalwarebytesMalware.AI.3840279257
MaxSecureTrojan.Malware.110927998.susgen
McAfeeTrojan-Sunburst!F492697F34C9
McAfeeDti!2ADE1AC8911A
MicroWorld-eScanTrojan.Sunburst.E
MicrosoftTrojan:MSIL/Solorigate!atmn
NANO-AntivirusTrojan.Win32.SunBurst.iebfsd
Paloaltogeneric.ml
PandaTrj/Solorigate.A
RisingBackdoor.[APT29]SunBurst!1.D029 (CLASSIC)
SentinelOneStatic AI - Malicious PE
SkyhighTrojan-Sunburst!F492697F34C9
SophosMal/Generic-S
SymantecBackdoor.Sunburst!gen1
TACHYONBackdoor/W32.DN-Sunburst.1028072
TencentWin32.Trojan.FalseSign.Rwhl
TrendMicroBackdoor.MSIL.SUNBURST.YXAL-Q
TrendMicro-HouseCallBackdoor.MSIL.SUNBURST.YXAL-Q
VBA32TScope.Trojan.MSIL
VIPRETrojan.Sunburst.E
VaristW32/MSIL_SunBurst.A.gen!Eldorado
ViRobotBackdoor.Win32.S.SunBurst.1028072
WebrootW32.Trojan.Sunburst
XcitiumMalware@#3l3eioeqndao7
YandexTrojan.Redcap!6bnf+b58KQY
alibabacloudBackdoor:MSIL/SunBurst.A
huorongBackdoor/MSIL.SunBurst.a

Process list

NameCommand line
<Ignored Process>
regsvr32.exe/s "C:\2ade1ac8911ad6a23498230a5e119516db47f6e76687f804e2512cc9bcfda2b0.dll"
<Ignored Process>
regsvr32.exe/s "C:\tmpwfi0uyqe.dll"