66893ab83a7d4e298720da28cd2ea4a860371ae938cdd86035ce920b933c9d85.exe
Classification: Malicious
66893ab83a7d4e298720da28cd2ea4a860371ae938cdd86035ce920b933c9d85.exe is a malicious file sample. Linked to Turla, Oilrig activity.
Detection summary
- 26 antivirus detections (38% detection ratio)
- 0 IDS alerts
- 1 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Cyber Threat Alliance |
2026-08-11 09:00:42 |
2026-08-11 09:00:42 |
malicious-activity
|
|
| Turla |
Maltiverse |
2023-03-03 04:26:37 |
2023-03-04 19:42:10 |
malicious-activity
|
G0010 Turla
|
| OilRig |
Maltiverse |
2023-03-03 04:26:38 |
2023-03-04 19:41:55 |
malicious-activity
|
G0049 OilRig
|
| Trojan.Generic |
Hybrid-Analysis |
2019-06-20 12:00:06 |
2019-06-20 12:00:06 |
|
|
Sample information
- Filenames
- 66893ab83a7d4e298720da28cd2ea4a860371ae938cdd86035ce920b933c9d85.exe
- File type
- PE32 executable (console) Intel 80386 Mono/.Net as ...
- Size
- 13312 bytes
- MD5
687d7ddb080fb769b26a0c054f4cd422
- SHA-1
3227e0b8181f05e393be41d633b08da07fadf194
- SHA-256
66893ab83a7d4e298720da28cd2ea4a860371ae938cdd86035ce920b933c9d85
- First indexed
- 2019-06-20 12:00:06
- Last updated
- 2023-03-04 19:42:10
Antivirus detections
| Engine | Detection |
| MicroWorld-eScan | Trojan.GenericKD.32036473 |
| CAT-QuickHeal | Trojan.Agent |
| Cylance | Unsafe |
| K7AntiVirus | Trojan ( 0054e04e1 ) |
| BitDefender | Trojan.GenericKD.32036473 |
| K7GW | Trojan ( 0054e04e1 ) |
| Cybereason | malicious.b080fb |
| Cyren | W32/Trojan.JYVW-8837 |
| Symantec | Backdoor.Trojan |
| GData | Win32.Trojan.Agent.F18EI5 |
| Kaspersky | Trojan.Win32.Agent.xaadzj |
| Alibaba | Trojan:Win32/Agent.5c0c08b6 |
| NANO-Antivirus | Trojan.Win32.Generic.frfubf |
| Tencent | Win32.Trojan.Agent.Wpjx |
| Ad-Aware | Trojan.GenericKD.32036473 |
| Emsisoft | Trojan.GenericKD.32036473 (B) |
| Comodo | Malware@#2t60cgdwax2vz |
| Trapmine | malicious.moderate.ml.score |
| FireEye | Trojan.GenericKD.32036473 |
| Antiy-AVL | Trojan/Win32.Agent |
| AegisLab | Trojan.Multi.Generic.4!c |
| ZoneAlarm | Trojan.Win32.Agent.xaadzj |
| ESET-NOD32 | a variant of MSIL/Agent.BVX |
| ALYac | Trojan.MSIL.Agent |
| VBA32 | TScope.Trojan.MSIL |
| TrendMicro-HouseCall | TROJ_GEN.R002C0PF919 |
Process list
| Name | Command line |
| 66893ab83a7d4e298720da28cd2ea4a860371ae938cdd86035ce920b933c9d85.exe | |