8064ae1cf196a7651b4d10c519ec89180dae6d16d602f8549692a70b050e9c82
Classification: Malicious
8064ae1cf196a7651b4d10c519ec89180dae6d16d602f8549692a70b050e9c82 is a malicious file sample. Reported by 1 threat source, last seen 2026-09-02.
Detection summary
- 47 antivirus detections
- 0 IDS alerts
- 93 processes observed
- 0 contacted hosts
- 0 DNS requests
Blacklist sightings
| Description |
Source |
First seen |
Last seen |
Labels |
MITRE ATT&CK |
| Generic Malware |
Hybrid-Analysis |
2024-11-20 12:00:04 |
2026-09-02 15:45:06 |
malicious-activity
|
|
Sample information
- Filenames
- 8064ae1cf196a7651b4d10c519ec89180dae6d16d602f8549692a70b050e9c82, SdAppServices_x64.dll
- File type
- PE32+ executable (DLL) (GUI) x86-64, for MS Windows
- Size
- 1401648 bytes
- MD5
37ed0308109d6524658df709e9dd2bea
- SHA-1
feb16fe282e86f85ec288cd3e8f6ffa398a1dec1
- SHA-256
8064ae1cf196a7651b4d10c519ec89180dae6d16d602f8549692a70b050e9c82
- First indexed
- 2024-11-20 11:44:50
- Last updated
- 2026-09-02 15:45:06
Antivirus detections
| Engine | Detection |
| ALYac | Trojan.GenericKD.74521480 |
| AVG | Win64:Malware-gen |
| AhnLab-V3 | Infostealer/Win.LummaC2.C5688166 |
| Alibaba | Trojan:Win32/DllHijack.4b263983 |
| Arcabit | Trojan.Generic.D4711B88 |
| Avast | Win64:Malware-gen |
| Avira | TR/AVI.Agent.jujia |
| BitDefender | Trojan.GenericKD.74521480 |
| Bkav | W64.AIDetectMalware |
| CAT-QuickHeal | Trojan.DLLhijack |
| CTX | dll.trojan.shellcoderunner |
| DeepInstinct | MALICIOUS |
| ESET-NOD32 | Win64/ShellcodeRunner.AGO |
| Elastic | malicious (moderate confidence) |
| Emsisoft | Trojan.GenericKD.74521480 (B) |
| F-Secure | Trojan.TR/AVI.Agent.jujia |
| FireEye | Trojan.GenericKD.74521480 |
| Fortinet | W64/ShellcodeRunner.AGO!tr |
| GData | Trojan.GenericKD.74521480 |
| Google | Detected |
| Gridinsoft | Trojan.Win64.Gen.cl |
| Ikarus | Trojan.Win64.Shellcoderunner |
| K7AntiVirus | Trojan ( 005bc9161 ) |
| K7GW | Trojan ( 005bc9161 ) |
| Kaspersky | Trojan.Win32.DllHijack.rcl |
| Kingsoft | Win32.Trojan.Dllhijack.a |
| Lionic | Trojan.Win32.ShellcodeRunner.4!c |
| MaxSecure | Trojan.Malware.294307697.susgen |
| McAfee | Artemis!37ED0308109D |
| McAfeeD | ti!8064AE1CF196 |
| MicroWorld-eScan | Trojan.GenericKD.74521480 |
| Microsoft | Trojan:Win32/Rugmi!MSR |
| NANO-Antivirus | Trojan.Win64.DllHijack.ktgpyf |
| Paloalto | generic.ml |
| Panda | Trj/RnkBend.A |
| Rising | Trojan.Rugmi!8.12850 (CLOUD) |
| Skyhigh | Artemis!Trojan |
| Sophos | Mal/Generic-S |
| Symantec | ML.Attribute.HighConfidence |
| Tencent | Malware.Win32.Gencirc.141f81ae |
| TrendMicro | TROJ_FRS.VSNTJU24 |
| TrendMicro-HouseCall | TROJ_FRS.VSNTJU24 |
| VIPRE | Trojan.GenericKD.74521480 |
| Varist | W64/ABApplication.MGKS-3668 |
| Zillya | Trojan.ShellcodeRunner.Win64.4799 |
| ZoneAlarm | UDS:Trojan.Win32.Dllhijack.a |
| huorong | Trojan/Generic!1E88B39DBBCAD2E8 |
Process list
| Name | Command line |
| <Ignored Process> | |
| rundll32.exe | "C:\SdAppServices_x64.dll",#1 |
| WerFault.exe | -u -p 4804 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#2 |
| WerFault.exe | -u -p 1676 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#3 |
| WerFault.exe | -u -p 1160 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#4 |
| WerFault.exe | -u -p 4784 -s 140 |
| WerFault.exe | -u -p 1676 -s 140 |
| WerFault.exe | -u -p 4804 -s 140 |
| WerFault.exe | -u -p 1160 -s 140 |
| WerFault.exe | -u -p 4784 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#5 |
| WerFault.exe | -u -p 5048 -s 140 |
| WerFault.exe | -u -p 4304 -s 140 |
| WerFault.exe | -u -p 5048 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#6 |
| WerFault.exe | -u -p 4160 -s 140 |
| WerFault.exe | -u -p 4160 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#7 |
| WerFault.exe | -u -p 2208 -s 140 |
| WerFault.exe | -u -p 2208 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#8 |
| WerFault.exe | -u -p 4952 -s 140 |
| WerFault.exe | -u -p 4952 -s 140 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#9 |
| WerFault.exe | -u -p 2416 -s 144 |
| WerFault.exe | -u -p 2416 -s 144 |
| rundll32.exe | "C:\SdAppServices_x64.dll",#10 |