tmphe739j52
Classification: Malicious
tmphe739j52 is a malicious file sample. Linked to Stuxnet malware. Reported by 1 threat source, last seen 2021-01-16. Detected by 28 antivirus engines.
Detection summary
- 28 antivirus detections (41% detection ratio)
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: STUXNET (S0603)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Stuxnet | Hybrid-Analysis | 2021-01-16 11:15:12 | 2021-01-16 11:15:12 | S0603 Stuxnet |
Tags
apt stuxnetSample information
- Filenames
- tmphe739j52
- File type
- PE32 executable (DLL) (GUI) Intel 80386, for MS Wi ...
- Size
- 1277952 bytes
- MD5
b410d22bc1ab02604ca6854283cef392- SHA-1
1c6a557dc4237116bbff5216477e5a4143207af5- SHA-256
cfd329bcd453569eb88b07a1751d63c2f40da983ff4ed9bbd6059f75038da0b1- First indexed
- 2021-01-16 11:15:12
- Last updated
- 2026-03-31 06:16:51
Antivirus detections
| Engine | Detection |
|---|---|
| FireEye | Generic.mg.b410d22bc1ab0260 |
| McAfee | GenericRXAA-FA!B410D22BC1AB |
| Cylance | Unsafe |
| Sangfor | Malware |
| K7AntiVirus | Trojan ( 004bcce41 ) |
| K7GW | Trojan ( 004bcce41 ) |
| CrowdStrike | win/malicious_confidence_100% (D) |
| Symantec | ML.Attribute.HighConfidence |
| Avast | Win32:Duqu-F [Rtk] |
| ClamAV | Win.Trojan.Agent-229176 |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| Paloalto | generic.ml |
| Sophos | Mal/Generic-S |
| Comodo | Packed.Win32.MUPX.Gen@24tbus |
| DrWeb | Trojan.Stuxnet.1 |
| VIPRE | Trojan.Win32.Generic!BT |
| McAfee-GW-Edition | BehavesLike.Win32.Generic.tz |
| SentinelOne | Static AI - Malicious PE |
| Jiangmin | Worm/Stuxnet.y |
| eGambit | Trojan.Generic |
| Antiy-AVL | Worm/Win32.Stuxnet |
| AegisLab | Trojan.Win32.Generic.4!c |
| ZoneAlarm | UDS:DangerousObject.Multi.Generic |
| Microsoft | Trojan:Win32/Stuxnet.E |
| APEX | Malicious |
| Ikarus | Worm.Win32.Stuxnet |
| Fortinet | PossibleThreat |
| AVG | Win32:Duqu-F [Rtk] |