d0b99353cb6500bb18f6e83fe9eed9ce16e5a8d5b940181e5eafd8d82f328a59.exe

Classification: Malicious

d0b99353cb6500bb18f6e83fe9eed9ce16e5a8d5b940181e5eafd8d82f328a59.exe is a malicious file sample. Linked to Turla, Oilrig activity.

Detection summary

  • 28 antivirus detections (41% detection ratio)
  • 0 IDS alerts
  • 1 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Intrusion sets: TURLA (G0010) OILRIG (G0049)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Generic Malware Cyber Threat Alliance 2026-08-11 10:20:16 2026-08-26 10:22:00 malicious-activity
Turla Maltiverse 2023-03-03 04:26:37 2023-03-04 19:42:16 malicious-activity G0010 Turla
OilRig Maltiverse 2023-03-03 04:26:38 2023-03-04 19:42:01 malicious-activity G0049 OilRig
Trojan.Generic Hybrid-Analysis 2019-06-20 12:00:05 2019-06-20 12:00:05

Tags

apt apt34

Sample information

Filenames
d0b99353cb6500bb18f6e83fe9eed9ce16e5a8d5b940181e5eafd8d82f328a59.exe
File type
PE32 executable (GUI) Intel 80386, for MS Windows
Size
73728 bytes
MD5
d3b51adaab3a2043082ecc204862e150
SHA-1
1eae480078d218bcb7002b6f25b090e6df21a335
SHA-256
d0b99353cb6500bb18f6e83fe9eed9ce16e5a8d5b940181e5eafd8d82f328a59
First indexed
2019-06-20 12:00:05
Last updated
2023-03-04 19:42:16

Antivirus detections

EngineDetection
MicroWorld-eScanTrojan.GenericKD.30435105
McAfeeGeneric Trojan.i
Invinceaheuristic
BaiduWin32.Trojan.WisdomEyes.16070401.9500.9975
SymantecTrojan.Gen.2
TrendMicro-HouseCallTROJ_DROPPER.XXTXV
AvastWin32:Malware-gen
GDataTrojan.GenericKD.30435105
BitDefenderTrojan.GenericKD.30435105
Ad-AwareTrojan.GenericKD.30435105
SophosMal/Generic-S
F-SecureTrojan.GenericKD.30435105
ZillyaTrojan.GenericKD.Win32.110263
TrendMicroTROJ_DROPPER.XXTXV
McAfee-GW-EditionGeneric Trojan.i
EmsisoftTrojan.GenericKD.30435105 (B)
CyrenW32/Trojan.OAZO-6043
AviraTR/Dropper.ordbc
ArcabitTrojan.Generic.D1D06721
MicrosoftTrojan:Win32/Tiggre!plock
ALYacTrojan.GenericKD.30435105
MAXmalware (ai score=84)
CylanceUnsafe
PandaTrj/GdSda.A
IkarusTrojan.Dropper
FortinetW32/DROPPER.XXTXV!tr
AVGWin32:Malware-gen
Qihoo-360Win32/Trojan.Dropper.7f0

Process list

NameCommand line
d0b99353cb6500bb18f6e83fe9eed9ce16e5a8d5b940181e5eafd8d82f328a59.exe