Order90001685004pdf.rar
Classification: Malicious
Order90001685004pdf.rar is a malicious file sample. Linked to Xloader malware. Reported by 1 threat source, last seen 2025-01-13.
Detection summary
- 19 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: XLOADER (S1207)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Formbook | MalwareBazaar Abuse.ch | 2025-01-13 09:30:31 | 2025-01-13 09:30:31 | malicious-activity | S1207 XLoader |
Sample information
- Filenames
- Order90001685004pdf.rar
- File type
- application/x-rar
- MD5
a7b1db19fdc8c266c287a3180fa482ea- SHA-1
7fa8b909511817ec0c122aa97d216d330ab76c84- SHA-256
68ba3f9a082ded6a25a1e3d6ada59241d73c631e8ddd7fca33856595212af383- First indexed
- 2025-01-13 10:21:48
- Last updated
- 2026-04-11 09:49:36
Antivirus detections
| Engine | Detection |
|---|---|
| Arcabit | Trojan.Zmutzy.21 |
| BitDefender | Gen:Variant.Zmutzy.21 |
| CTX | rar.unknown.zmutzy |
| Emsisoft | Gen:Variant.Zmutzy.21 (B) |
| FireEye | Gen:Variant.Zmutzy.21 |
| Fortinet | MSIL/GenKryptik.GWRN!tr |
| GData | Gen:Variant.Zmutzy.21 |
| Detected | |
| K7AntiVirus | Trojan ( 00564f471 ) |
| K7GW | Trojan ( 00564f471 ) |
| Kaspersky | UDS:Trojan.MSIL.Taskun.gen |
| McAfee | Artemis!A7B1DB19FDC8 |
| Sangfor | Suspicious.Win32.Save.a |
| SentinelOne | Static AI - Malicious Archive |
| Skyhigh | BehavesLike.Generic.hc |
| Sophos | Mal/DrodRar-A |
| VBA32 | suspected of Win32.PhishingPE.Heur |
| VIPRE | Gen:Variant.Zmutzy.21 |
| huorong | HEUR:TrojanSpy/MSIL.AgentTesla.c |