Classification: Malicious
lu4-win64-shipping.exe is a malicious file sample. Reported by 1 threat source, last seen 2025-06-22. Detected by 18 antivirus engines.
Detection summary
- 18 antivirus detections
- 1 IDS alerts
- 1 processes observed
- 4 contacted hosts
- 4 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2025-06-22 10:15:02 |
2025-06-22 12:15:10 |
|
|
Sample information
- Filenames
- lu4-win64-shipping.exe
- File type
- PE32+ executable (GUI) x86-64, for MS Windows, 9 s ...
- Size
- 49528944 bytes
- MD5
35cdbfb928b07be2a81272cfb5a7863c
- SHA-1
3f09ca4d34d6e6ba7311eb761e46bae4255b4c7a
- SHA-256
4ee4b3ea06b8f20c0ab48e95e3e6c9071a6029d54a8730b9e080cf1e6e3f8c3f
- First indexed
- 2025-06-22 10:06:56
- Last updated
- 2025-06-22 12:15:11
Antivirus detections
| Engine | Detection |
| ALYac | Gen:Variant.Barys.494608 |
| AhnLab-V3 | Trojan/Win.Generic.C5772960 |
| Arcabit | Trojan.Barys.D78C10 |
| BitDefender | Gen:Variant.Barys.494608 |
| CTX | exe.trojan.barys |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| Emsisoft | Gen:Variant.Barys.494608 (B) |
| Fortinet | W32/PossibleThreat |
| GData | Gen:Variant.Barys.494608 |
| Google | Detected |
| Ikarus | Trojan.Win32.Yomal |
| MaxSecure | Trojan.Malware.219104223.susgen |
| MicroWorld-eScan | Gen:Variant.Barys.494608 |
| Microsoft | Trojan:Win32/Yomal!rfn |
| Skyhigh | Artemis |
| VIPRE | Gen:Variant.Barys.494608 |
| Varist | W64/ABTrojan.ZBYN-3624 |
Process list
| Name | Command line |
| lu4-win64-shipping.exe | |