97a615e69c38db9dffda6be7c11dd27547ce4036a4998a1469fa81b548c6f0b0

Classification: Malicious

97a615e69c38db9dffda6be7c11dd27547ce4036a4998a1469fa81b548c6f0b0 is a malicious file sample. Linked to Oilrig activity. Detected by 33 antivirus engines.

Detection summary

  • 33 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Intrusion sets: OILRIG (G0049)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
OilRig Maltiverse 2023-04-28 04:48:35 2023-04-29 20:25:58 malicious-activity G0049 OilRig

Tags

apt apt34

Sample information

SHA-256
97a615e69c38db9dffda6be7c11dd27547ce4036a4998a1469fa81b548c6f0b0
First indexed
2023-04-29 20:25:58
Last updated
2023-04-29 20:25:58

Antivirus detections

EngineDetection
LionicTrojan.Win32.Paph.4!c
ALYacTrojan.GenericKD.65433919
Cylanceunsafe
ZillyaDownloader.Paph.Win32.1372
AlibabaTrojanDownloader:Win32/Generic.d4b5ec8e
SymantecTrojan Horse
ESET-NOD32PowerShell/TrojanDownloader.Agent.GVO
Paloaltogeneric.ml
KasperskyTrojan-Downloader.Win32.Paph.mnj
BitDefenderTrojan.GenericKD.65433919
MicroWorld-eScanTrojan.GenericKD.65433919
AvastWin64:Malware-gen
RisingDownloader.Paph!8.58D0 (CLOUD)
EmsisoftTrojan.GenericKD.65433919 (B)
VIPRETrojan.GenericKD.65433919
TrendMicroTROJ_FRS.VSNTDQ23
McAfee-GW-EditionArtemis
FireEyeTrojan.GenericKD.65433919
SophosMal/Generic-S
Antiy-AVLTrojan[Downloader]/Win32.Paph
ArcabitTrojan.Generic.D3E6713F
ZoneAlarmTrojan-Downloader.Win32.Paph.mnj
GDataTrojan.GenericKD.65433919
AhnLab-V3Trojan/Win.Generic.C5419268
McAfeeArtemis!B6E10EAF5BCB
MAXmalware (ai score=80)
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_FRS.VSNTDQ23
TencentWin32.Trojan-Downloader.Paph.Hkjl
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin64:Malware-gen
DeepInstinctMALICIOUS