audio

Classification: Malicious

audio is a malicious file sample. Linked to Daggerfly activity. Reported by 3 threat sources, last seen 2026-08-08. Detected by 52 antivirus engines.

Detection summary

  • 52 antivirus detections (64% detection ratio)
  • 0 IDS alerts
  • 3 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Intrusion sets: DAGGERFLY (G1034)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Cyber Threat Alliance 2026-08-08 10:17:51 2026-08-08 10:17:51 malicious-activity
Generic Malware Hybrid-Analysis 2023-05-22 08:00:03 2023-05-22 08:00:03
Bronze Highland Maltiverse 2023-04-21 04:32:47 2023-04-22 14:55:19 malicious-activity G1034 Daggerfly

Tags

backdoor keylogger panda plugx apt

Sample information

Filenames
audio
File type
PE32 executable (DLL) (console) Intel 80386, for M ...
Size
124416 bytes
MD5
07df8d223f8a370cd703d177d7e93a36
SHA-1
9d1ecbbe8637fed0d89fca1af35ea821277ad2e8
SHA-256
2c0cfe2f4f1e7539b4700e1205411ec084cbc574f9e4710ecd4733fbf0f8a7dc
First indexed
2023-04-22 14:55:19
Last updated
2025-10-21 00:13:06

Antivirus detections

EngineDetection
ALYacTrojan.Agent.MgBot
AVGWin32:Trojan-gen
AhnLab-V3Trojan/Win.Agent.C5418978
AlibabaTrojan:Win32/MgBot.edb0b31a
ArcabitTrojan.Fragtor.D407F9
AvastWin32:Trojan-gen
AviraTR/Agent.hgdbj
BitDefenderGen:Variant.Fragtor.264185
BkavW32.Common.69C1B03A
CAT-QuickHealTrojan.Ghanarava.1733891334e93a36
CTXdll.trojan.generic
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
DrWebTrojan.Siggen20.43765
ESET-NOD32Win32/Agent.VFT
Elasticmalicious (moderate confidence)
EmsisoftGen:Variant.Fragtor.264185 (B)
F-SecureTrojan.TR/Agent.hgdbj
FortinetW32/Agent.VFT!tr
GDataGen:Variant.Fragtor.264185
GoogleDetected
GridinsoftTrojan.Win32.Agent.oa!s1
IkarusTrojan.Win32.Agent
K7AntiVirusTrojan ( 004986881 )
K7GWTrojan ( 004986881 )
KasperskyTrojan.Win32.MgBot.a
LionicTrojan.Win32.MgBot.4!c
MalwarebytesMalware.AI.4270901185
MaxSecureTrojan.Malware.206623782.susgen
McAfeeDti!2C0CFE2F4F1E
MicroWorld-eScanGen:Variant.Fragtor.264185
MicrosoftTrojan:Win32/Agent.VFT
NANO-AntivirusTrojan.Win32.MgBot.jwielw
Paloaltogeneric.ml
PandaTrj/Chgt.AD
RisingTrojan.Agent!8.B1E (KTSE)
SangforTrojan.Win32.Mgbot.Vm98
SkyhighBehavesLike.Win32.Injector.ch
SophosMal/Generic-S
SymantecTrojan Horse
TencentMalware.Win32.Gencirc.13ae87ca
TrellixENSArtemis!07DF8D223F8A
TrendMicroTrojan.Win32.MGBOT.USBLBS24
TrendMicro-HouseCallTrojan.Win32.MGBOT.USBLBS24
VIPREGen:Variant.Fragtor.264185
VaristW32/Agent.NOMD-3990
YandexTrojan.MgBot!/xDD8FWKQcw
ZillyaTrojan.MgBot.Win32.1
alibabacloudTrojan:Win/Agent.V#B
huorongTrojan/Generic!29120668FDFF0EB1

Process list

NameCommand line
<Ignored Process>
rundll32.exe"C:\audio.dll",#1
rundll32.exe"C:\audio.dll",#2