4db89c39db14f4d9f76d06c50fef2d9282e83c03e8c948a863b58dedc43edd31
Classification: Malicious
4db89c39db14f4d9f76d06c50fef2d9282e83c03e8c948a863b58dedc43edd31 is a malicious file sample. Linked to Fin8, Fin7 activity. Detected by 52 antivirus engines.
Detection summary
- 52 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: FIN8 (G0061) FIN7 (G0046)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Fin8 | Maltiverse | 2023-08-18 04:16:05 | 2023-08-19 20:21:51 | malicious-activity | G0061 FIN8 |
| Fin7 | Maltiverse | 2023-08-18 04:16:05 | 2023-08-19 20:21:49 | malicious-activity | G0046 FIN7 |
Tags
aptSample information
- SHA-256
4db89c39db14f4d9f76d06c50fef2d9282e83c03e8c948a863b58dedc43edd31- First indexed
- 2023-08-19 20:21:49
- Last updated
- 2025-12-20 00:35:25
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Trojan.MSIL.Agent |
| APEX | Malicious |
| AVG | Win32:MalwareX-gen [Misc] |
| AhnLab-V3 | Trojan/Win.Generic.C5458183 |
| Arcabit | Trojan.Agent.GFRR |
| Avast | Win32:MalwareX-gen [Misc] |
| Avira | TR/Agent.aulr |
| BitDefender | Trojan.Agent.GFRR |
| Bkav | W32.AIDetectMalware.CS |
| CAT-QuickHeal | Trojan.Malagent.S30640132 |
| CTX | dll.trojan.msil |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| ESET-NOD32 | MSIL/Agent.WIH trojan |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.Agent.GFRR (B) |
| F-Secure | Trojan.TR/Agent.aulr |
| Fortinet | W32/Agent.WIH!tr |
| GData | Trojan.Agent.GFRR |
| Detected | |
| Gridinsoft | Trojan.Heur!.03012280 |
| Ikarus | Trojan.MSIL.Agent |
| Jiangmin | Trojan.MSIL.apaxd |
| K7AntiVirus | Trojan ( 005a8dde1 ) |
| K7GW | Trojan ( 005f37861 ) |
| Kaspersky | HEUR:Trojan.MSIL.Agentb.gen |
| Kingsoft | MSIL.Trojan.Agentb.gen |
| Lionic | Trojan.Win32.Agentb.X!c |
| Malwarebytes | Trojan.Agent.MSIL |
| MaxSecure | Trojan.Malware.73701643.susgen |
| McAfeeD | ti!4DB89C39DB14 |
| MicroWorld-eScan | Trojan.Agent.GFRR |
| Microsoft | Trojan:MSIL/AgentTesla!MSR |
| Paloalto | generic.ml |
| Panda | Trj/Chgt.AD |
| Rising | Trojan.Agent!8.B1E (CLOUD) |
| Sangfor | Trojan.Msil.Agentb.Vubw |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Generic.cc |
| Sophos | Troj/MSILAg-AB |
| Symantec | Trojan Horse |
| Tencent | Malware.Win32.Gencirc.1495ffff |
| TrellixENS | Artemis!2DAD0E664638 |
| TrendMicro | TROJ_GEN.R002C0DGO23 |
| TrendMicro-HouseCall | TROJ_GEN.R002C0DGO23 |
| VIPRE | Trojan.Agent.GFRR |
| Varist | W32/Agent.MOHI-1251 |
| Yandex | Trojan.Agentb!XyqiWQLRcVo |
| Zillya | Trojan.Agent.Win32.3592065 |
| ZoneAlarm | Troj/MSILAg-AB |
| alibabacloud | Trojan:MSIL/AgentTesla.Gen |