37f9b131926abb483d407fd4d3058d0efe1ac7cf88f9964cf0e6ad7502dbc769f6e7367ea78f8b7ecbc4b0d8ff5a39faa220ca0c5872a33b256460f263d5d203
Classification: Malicious
37f9b131926abb483d407fd4d3058d0efe1ac7cf88f9964cf0e6ad7502dbc769f6e7367ea78f8b7ecbc4b0d8ff5a39faa220ca0c5872a33b256460f263d5d203 is a malicious file sample.
Detection summary
- 70 antivirus detections (54% detection ratio)
- 0 IDS alerts
- 1 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2023-05-04 07:15:03 |
2023-05-04 07:15:03 |
|
|
| OilRig |
Maltiverse |
2023-04-28 04:48:35 |
2023-04-29 20:25:59 |
malicious-activity
|
G0049 OilRig
|
Sample information
- Filenames
- 37f9b131926abb483d407fd4d3058d0efe1ac7cf88f9964cf0e6ad7502dbc769f6e7367ea78f8b7ecbc4b0d8ff5a39faa220ca0c5872a33b256460f263d5d203
- File type
- PE32+ executable (GUI) x86-64, for MS Windows
- Size
- 527872 bytes
- MD5
ed957eacd0456b70c518c81996180812
- SHA-1
f3782870f225843d72085c611132b7ced797d73e
- SHA-256
5704bc31061c7ca675bb9d56b9b56a175bf949accf6542999b3a7305af485906
- First indexed
- 2023-04-29 20:25:59
- Last updated
- 2026-04-13 02:54:48
Antivirus detections
| Engine | Detection |
| Lionic | Trojan.Win32.Inject.1b!c |
| Elastic | malicious (moderate confidence) |
| MicroWorld-eScan | Trojan.GenericKD.66664728 |
| FireEye | Trojan.GenericKD.66664728 |
| ALYac | Trojan.GenericKD.66664728 |
| Sangfor | Trojan.Win64.Inject.Va6z |
| BitDefender | Trojan.GenericKD.66664728 |
| CrowdStrike | win/malicious_confidence_90% (W) |
| Arcabit | Trojan.Generic.D3F93918 |
| Symantec | Trojan Horse |
| ESET-NOD32 | a variant of Win64/Inject.W |
| APEX | Malicious |
| Kaspersky | Trojan.Win64.Inject.aix |
| Rising | Malware.FakeFolder/ICON!1.D519 (CLASSIC) |
| Sophos | Mal/Generic-S |
| F-Secure | Trojan.TR/Inject.qhsrc |
| VIPRE | Trojan.GenericKD.66664728 |
| TrendMicro | TROJ_GEN.R002C0PDR23 |
| McAfee-GW-Edition | BehavesLike.Win64.MultiPlug.hh |
| Emsisoft | Trojan.GenericKD.66664728 (B) |
| Avira | TR/Inject.qhsrc |
| Antiy-AVL | Trojan/Win64.Inject |
| Microsoft | Trojan:Win32/Woreflint.A!cl |
| ZoneAlarm | Trojan.Win64.Inject.aix |
| GData | Trojan.GenericKD.66664728 |
| Cynet | Malicious (score: 100) |
| AhnLab-V3 | Trojan/Win.Inject.C5419301 |
| McAfee | Artemis!ED957EACD045 |
| MAX | malware (ai score=84) |
| DeepInstinct | MALICIOUS |
| Cylance | unsafe |
| Panda | Trj/Chgt.AD |
| TrendMicro-HouseCall | TROJ_GEN.R002C0PDR23 |
| Fortinet | W32/Inject.W!tr |
| ALYac | Dump:Generic.Trojan.Cryptim.Marte.A.10351770 |
| AVG | Win64:Trojan-gen |
| Arcabit | Dump:Generic.Trojan.Cryptim.Marte.A.D9DF49A |
| Avast | Win64:Trojan-gen |
| BitDefender | Dump:Generic.Trojan.Cryptim.Marte.A.10351770 |
| Bkav | W64.AIDetectMalware |
| CTX | exe.trojan.inject |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 99) |
| DrWeb | Trojan.Inject5.3070 |
| ESET-NOD32 | Win64/Inject.W trojan |
| Emsisoft | Dump:Generic.Trojan.Cryptim.Marte.A.10351770 (B) |
| GData | Dump:Generic.Trojan.Cryptim.Marte.A.10351770 |
| Google | Detected |
| K7AntiVirus | Trojan ( 005fad561 ) |
| K7GW | Trojan ( 005fad561 ) |
| Lionic | Trojan.Win32.Cryptim.4!c |
| MaxSecure | Trojan.Malware.206994969.susgen |
| McAfeeD | ti!5704BC31061C |
| MicroWorld-eScan | Dump:Generic.Trojan.Cryptim.Marte.A.10351770 |
| Microsoft | Trojan:Win32/Leonem |
| NANO-Antivirus | Trojan.Win64.Inject5.kkfzgw |
| Paloalto | generic.ml |
| Sangfor | Trojan.Win64.Inject.Vhxg |
| Skyhigh | BehavesLike.Win64.Dropper.hh |
| Tencent | Malware.Win32.Gencirc.11c6f7db |
| TrellixENS | Artemis!ED957EACD045 |
| TrendMicro | TROJ_FRS.0NA103JM24 |
| TrendMicro-HouseCall | TROJ_FRS.0NA103JM24 |
| VBA32 | Trojan.Win64.Inject |
| VIPRE | Dump:Generic.Trojan.Cryptim.Marte.A.10351770 |
| Varist | W64/Inject.A |
| Yandex | Trojan.Inject!c/2Pecn9GN4 |
| Zillya | Trojan.Inject.Win64.305 |
| alibabacloud | Trojan:Win/Inject.W |
Process list
| Name | Command line |
| 37f9b131926abb483d407fd4d3058d0efe1ac7cf88f9964cf0e6ad7502dbc769f6e7367ea78f8b7ecbc4b0d8ff5a39faa220ca0c5872a33b256460f263d5d203.exe | |