7bd3ff9ba43020688acaa05ce4e0a8f92f53d9d9264053255a5937cbd7a5465e.exe
Classification: Malicious
7bd3ff9ba43020688acaa05ce4e0a8f92f53d9d9264053255a5937cbd7a5465e.exe is a malicious file sample. Linked to Turla, Oilrig activity.
Detection summary
- 38 antivirus detections (54% detection ratio)
- 0 IDS alerts
- 1 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Turla |
Maltiverse |
2023-03-03 04:26:37 |
2023-03-04 19:42:12 |
malicious-activity
|
G0010 Turla
|
| OilRig |
Maltiverse |
2023-03-03 04:26:38 |
2023-03-04 19:41:57 |
malicious-activity
|
G0049 OilRig
|
| Trojan.Generic |
Hybrid-Analysis |
2019-06-20 12:00:05 |
2019-06-20 12:00:05 |
|
|
Sample information
- Filenames
- 7bd3ff9ba43020688acaa05ce4e0a8f92f53d9d9264053255a5937cbd7a5465e.exe
- File type
- PE32 executable (console) Intel 80386 Mono/.Net as ...
- Size
- 13824 bytes
- MD5
1753424464a00c628d7166152cc30d1e
- SHA-1
05071cf5da3040d6cbdfd9413a79029e605ac364
- SHA-256
7bd3ff9ba43020688acaa05ce4e0a8f92f53d9d9264053255a5937cbd7a5465e
- First indexed
- 2019-06-20 12:00:05
- Last updated
- 2023-03-04 19:42:12
Antivirus detections
| Engine | Detection |
| MicroWorld-eScan | Trojan.GenericKD.41334213 |
| FireEye | Trojan.GenericKD.41334213 |
| CAT-QuickHeal | Trojan.Agent |
| McAfee | RDN/Generic.dx |
| BitDefender | Trojan.GenericKD.41334213 |
| K7GW | Trojan ( 0054e04e1 ) |
| K7AntiVirus | Trojan ( 0054e04e1 ) |
| TrendMicro | TROJ_GEN.R011C0WEU19 |
| Symantec | Backdoor.Trojan |
| GData | Trojan.GenericKD.41334213 |
| Kaspersky | Trojan.Win32.Agent.xaadzi |
| Alibaba | Trojan:Win32/Agent.bc6b593c |
| NANO-Antivirus | Trojan.Win32.Generic.fqfkxd |
| AegisLab | Trojan.Win32.Agent.4!c |
| Ad-Aware | Trojan.GenericKD.41334213 |
| Emsisoft | Trojan.GenericKD.41334213 (B) |
| Comodo | Malware@#35pnhj0g95ewj |
| Zillya | Trojan.Agent.Win32.1099599 |
| McAfee-GW-Edition | RDN/Generic.dx |
| Sophos | Mal/Generic-S |
| Cyren | W32/Trojan.POWH-1817 |
| Antiy-AVL | Trojan/Win32.Agent |
| Microsoft | Trojan:Win32/Tiggre!plock |
| Arcabit | Trojan.Generic.D276B5C5 |
| ZoneAlarm | Trojan.Win32.Agent.xaadzi |
| ESET-NOD32 | a variant of MSIL/Agent.BVX |
| VBA32 | TScope.Trojan.MSIL |
| ALYac | Trojan.GenericKD.41334213 |
| Cylance | Unsafe |
| TrendMicro-HouseCall | TROJ_GEN.R011C0WEU19 |
| Rising | Trojan.Agent!8.B1E (CLOUD) |
| Yandex | Trojan.Agent!XIC5UgHUYrg |
| Ikarus | Trojan.MSIL.Agent |
| Fortinet | W32/Agent.BVX!tr |
| AVG | Win32:Trojan-gen |
| Cybereason | malicious.464a00 |
| Avast | Win32:Trojan-gen |
| Qihoo-360 | Win32/Trojan.3f2 |
Process list
| Name | Command line |
| 7bd3ff9ba43020688acaa05ce4e0a8f92f53d9d9264053255a5937cbd7a5465e.exe | |