jivarthr edis.exe

Classification: Malicious

jivarthr edis.exe is a malicious file sample. Linked to Crimson malware. Reported by 1 threat source, last seen 2025-02-16. Detected by 51 antivirus engines.

Detection summary

  • 51 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: CRIMSON (S0115)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
CrimsonRAT MalwareBazaar Abuse.ch 2025-02-16 20:16:29 2025-02-16 20:16:29 malicious-activity S0115 Crimson

Sample information

Filenames
jivarthr edis.exe
File type
application/x-dosexec
MD5
3a231bcc60569143aa899295e4a5ce8a
SHA-1
8916cceb3f1b309d866bea10da41465baf720b00
SHA-256
b5c8e2afa1091e9513da06cfaa1ceed25e091692cdfe7f304e367c58957e2d63
First indexed
2025-02-16 21:24:17
Last updated
2025-02-16 21:24:17

Antivirus detections

EngineDetection
ALYacIL:Trojan.MSILZilla.171909
AVGWin32:BackdoorX-gen [Trj]
AhnLab-V3Malware/Win32.RL_Generic.C4268806
AlibabaBackdoor:MSIL/CrimsonRat.ce19f5f3
Antiy-AVLTrojan/MSIL.Agent
ArcabitIL:Trojan.MSILZilla.D29F85
AvastWin32:BackdoorX-gen [Trj]
AviraTR/Agent.epvoa
BitDefenderIL:Trojan.MSILZilla.171909
CAT-QuickHealTrojan.Ghanarava.1738930471a5ce8a
CTXexe.trojan.msil
CrowdStrikewin/malicious_confidence_100% (W)
CylanceUnsafe
DeepInstinctMALICIOUS
DrWebBackDoor.CrimsonNET.14
ESET-NOD32a variant of MSIL/Agent.BNY
Elasticmalicious (high confidence)
EmsisoftIL:Trojan.MSILZilla.171909 (B)
F-SecureTrojan.TR/Agent.epvoa
FireEyeGeneric.mg.3a231bcc60569143
FortinetMSIL/Agent.BNY!tr
GDataIL:Trojan.MSILZilla.171909
GoogleDetected
GridinsoftTrojan.Win32.Agent.sa
IkarusTrojan.MSIL.Agent
K7AntiVirusTrojan ( 0053965f1 )
K7GWTrojan ( 0053965f1 )
KasperskyHEUR:Backdoor.MSIL.CrimsonRat.gen
KingsoftMSIL.Backdoor.CrimsonRat.gen
LionicTrojan.Win32.CrimsonRat.m!c
MalwarebytesMalware.AI.4283621955
McAfeeArtemis!3A231BCC6056
McAfeeDti!B5C8E2AFA109
MicroWorld-eScanIL:Trojan.MSILZilla.171909
MicrosoftTrojan:Win32/Wacatac.B!ml
Paloaltogeneric.ml
PandaTrj/Chgt.AD
RisingBackdoor.Crimson!1.EA63 (CLASSIC)
SangforBackdoor.Msil.Agent.Vrum
SentinelOneStatic AI - Malicious PE
SkyhighArtemis!Trojan
SophosMal/Generic-S
SymantecML.Attribute.HighConfidence
TencentMalware.Win32.Gencirc.1431def8
TrendMicro-HouseCallTROJ_GEN.R002H09B625
VBA32Backdoor.MSIL.Crimson.Heur
VIPREIL:Trojan.MSILZilla.171909
VaristW32/ABTrojan.UWKK-1312
ZillyaTrojan.Agent.Win32.4157503
alibabacloudTrojan:MSIL/MSILHeracles.Gen
huorongBackdoor/MSIL.CrimsonRat.b