97a615e69c38db9dffda6be7c11dd27547ce4036a4998a1469fa81b548c6f0b0
Classification: Malicious
97a615e69c38db9dffda6be7c11dd27547ce4036a4998a1469fa81b548c6f0b0 is a malicious file sample. Linked to Oilrig activity. Detected by 33 antivirus engines.
Detection summary
- 33 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: OILRIG (G0049)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| OilRig | Maltiverse | 2023-04-28 04:48:35 | 2023-04-29 20:25:58 | malicious-activity | G0049 OilRig |
Tags
apt apt34Sample information
- SHA-256
97a615e69c38db9dffda6be7c11dd27547ce4036a4998a1469fa81b548c6f0b0- First indexed
- 2023-04-29 20:25:58
- Last updated
- 2023-04-29 20:25:58
Antivirus detections
| Engine | Detection |
|---|---|
| Lionic | Trojan.Win32.Paph.4!c |
| ALYac | Trojan.GenericKD.65433919 |
| Cylance | unsafe |
| Zillya | Downloader.Paph.Win32.1372 |
| Alibaba | TrojanDownloader:Win32/Generic.d4b5ec8e |
| Symantec | Trojan Horse |
| ESET-NOD32 | PowerShell/TrojanDownloader.Agent.GVO |
| Paloalto | generic.ml |
| Kaspersky | Trojan-Downloader.Win32.Paph.mnj |
| BitDefender | Trojan.GenericKD.65433919 |
| MicroWorld-eScan | Trojan.GenericKD.65433919 |
| Avast | Win64:Malware-gen |
| Rising | Downloader.Paph!8.58D0 (CLOUD) |
| Emsisoft | Trojan.GenericKD.65433919 (B) |
| VIPRE | Trojan.GenericKD.65433919 |
| TrendMicro | TROJ_FRS.VSNTDQ23 |
| McAfee-GW-Edition | Artemis |
| FireEye | Trojan.GenericKD.65433919 |
| Sophos | Mal/Generic-S |
| Antiy-AVL | Trojan[Downloader]/Win32.Paph |
| Arcabit | Trojan.Generic.D3E6713F |
| ZoneAlarm | Trojan-Downloader.Win32.Paph.mnj |
| GData | Trojan.GenericKD.65433919 |
| AhnLab-V3 | Trojan/Win.Generic.C5419268 |
| McAfee | Artemis!B6E10EAF5BCB |
| MAX | malware (ai score=80) |
| Panda | Trj/Chgt.AD |
| TrendMicro-HouseCall | TROJ_FRS.VSNTDQ23 |
| Tencent | Win32.Trojan-Downloader.Paph.Hkjl |
| MaxSecure | Trojan.Malware.300983.susgen |
| Fortinet | W32/PossibleThreat |
| AVG | Win64:Malware-gen |
| DeepInstinct | MALICIOUS |