585ec4c541d0185e467bff79d611e7c1.dll
Classification: Malicious
585ec4c541d0185e467bff79d611e7c1.dll is a malicious file sample. Linked to Get2 malware. Reported by 1 threat source, last seen 2020-12-14.
Detection summary
- 77 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: GET2 (S0460)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Get2 | Abuse.ch | 2020-12-14 20:07:07 | 2020-12-14 20:07:07 | malicious-activity | S0460 Get2 |
Sample information
- Filenames
- 585ec4c541d0185e467bff79d611e7c1.dll
- File type
- application/x-dosexec
- MD5
585ec4c541d0185e467bff79d611e7c1- SHA-1
3bb0e336f2676cd59b5028a89ef869966df8b448- SHA-256
32286ed3acc2ab1145b88677ae0924fbe4c39d5156d5dfe5985275d0a01f732f- First indexed
- 2020-12-14 21:15:05
- Last updated
- 2025-09-30 01:39:57
Antivirus detections
| Engine | Detection |
|---|---|
| Bkav | W32.AIDetectVM.malware1 |
| Elastic | malicious (high confidence) |
| FireEye | Generic.mg.585ec4c541d0185e |
| Cylance | Unsafe |
| Sangfor | Malware |
| CrowdStrike | win/malicious_confidence_80% (D) |
| Alibaba | TrojanDownloader:Win32/Gangola.c1f91df7 |
| K7GW | Trojan ( 0056c2101 ) |
| K7AntiVirus | Trojan ( 0056c2101 ) |
| BitDefenderTheta | Gen:NN.ZedlaF.34670.rC4@aup5Ozfi |
| Symantec | ML.Attribute.HighConfidence |
| ESET-NOD32 | a variant of Win32/Agent.ACFY |
| APEX | Malicious |
| Kaspersky | HEUR:Trojan-Downloader.Win32.Gangola.gen |
| AegisLab | Trojan.Win32.Gangola.a!c |
| Rising | Malware.Obscure/Heur!1.A89E (CLASSIC) |
| Sophos | Mal/Generic-S |
| F-Secure | Trojan.TR/Agent.fynmh |
| McAfee-GW-Edition | BehavesLike.Win32.Generic.dh |
| SentinelOne | Static AI - Malicious PE |
| GData | Win32.Trojan.Agent.FX0N6G |
| Jiangmin | TrojanDownloader.Gangola.s |
| Webroot | W32.Malware.Gen |
| Avira | TR/Agent.fynmh |
| ZoneAlarm | HEUR:Trojan-Downloader.Win32.Gangola.gen |
| Microsoft | Trojan:Win32/Wacatac.B!ml |
| Cynet | Malicious (score: 100) |
| AhnLab-V3 | Malware/Win32.Generic.C4251082 |
| McAfee | RDN/Generic Downloader.x |
| TrendMicro-HouseCall | TROJ_GEN.R067H0CL720 |
| Ikarus | Trojan.Win32.Agent |
| Fortinet | W32/Agent.ACFY!tr |
| AVG | Win32:DropperX-gen [Drp] |
| Qihoo-360 | Generic/HEUR/QVM30.2.CD44.Malware.Gen |
| ALYac | Trojan.Downloader.Gangola.A |
| AVG | Win32:MalwareX-gen [Drp] |
| AhnLab-V3 | Trojan/Win32.Reflect.R362959 |
| Alibaba | TrojanDownloader:Win32/Gangola.cfdc97a6 |
| Antiy-AVL | Trojan/Win32.Agent |
| Arcabit | Trojan.Bulz.D3E677 |
| Avast | Win32:MalwareX-gen [Drp] |
| BitDefender | Gen:Variant.Bulz.255607 |
| Bkav | W32.Common.9EDA7C04 |
| CAT-QuickHeal | Trojan.Ghanarava.167411195211e7c1 |
| CTX | dll.trojan.gangola |
| CrowdStrike | win/malicious_confidence_100% (W) |
| DeepInstinct | MALICIOUS |
| Emsisoft | Gen:Variant.Bulz.255607 (B) |
| GData | Gen:Variant.Bulz.255607 |
| Detected | |
| Gridinsoft | Trojan.Win32.Downloader.oa!s1 |
| K7AntiVirus | Trojan ( 00577de61 ) |
| K7GW | Trojan ( 00577de61 ) |
| Kingsoft | malware.kb.a.897 |
| Lionic | Trojan.Win32.Gangola.a!c |
| MaxSecure | Trojan.Malware.106843083.susgen |
| McAfeeD | ti!32286ED3ACC2 |
| MicroWorld-eScan | Gen:Variant.Bulz.255607 |
| NANO-Antivirus | Trojan.Win32.Gangola.ikyxve |
| Paloalto | generic.ml |
| Panda | Trj/GdSda.A |
| Rising | Downloader.[TA505]StealthLoader!1.BD87 (CLASSIC) |
| Sangfor | Trojan.Win32.Save.a |
| SentinelOne | Static AI - Suspicious PE |
| Skyhigh | Downloader-FCGL!585EC4C541D0 |
| Tencent | Malware.Win32.Gencirc.13b3f676 |
| TrellixENS | Downloader-FCGL!585EC4C541D0 |
| TrendMicro | TROJ_GEN.R002C0PCH25 |
| TrendMicro-HouseCall | TROJ_GEN.R002C0PCH25 |
| VBA32 | TrojanDownloader.Gangola |
| VIPRE | Gen:Variant.Bulz.255607 |
| Varist | W32/ABTrojan.JTVW-7119 |
| Webroot | W32.Malware.gen |
| Xcitium | Malware@#1fkfmb6u1kgxk |
| Zillya | Trojan.Agent.Win32.1631169 |
| alibabacloud | Trojan[downloader]:Win/Gangola.gen |
| huorong | TrojanDownloader/Agent.vr |