47929fb6916ac4f0f2b3249c5aa3c1a9
Classification: Malicious
47929fb6916ac4f0f2b3249c5aa3c1a9 is a malicious file sample. Linked to Jhuhugit malware. Reported by 1 threat source, last seen 2018-09-10.
Detection summary
- 58 antivirus detections (53% detection ratio)
- 0 IDS alerts
- 0 processes observed
- 3 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: JHUHUGIT (S0044)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Trojan.Sofacy | Hybrid-Analysis | 2018-09-10 20:30:08 | 2018-09-10 20:30:08 | S0044 JHUHUGIT |
Sample information
- Filenames
- 47929fb6916ac4f0f2b3249c5aa3c1a9
- File type
- PE32+ executable (DLL) (GUI) x86-64, for MS Windows
- Size
- 74240 bytes
- MD5
47929fb6916ac4f0f2b3249c5aa3c1a9- SHA-1
0f083c765024c32b83a9b34071c3c1c1ca7180c5- SHA-256
fea9a7bf46f22303a666964eb59b2f58dc77de606171e1b1de0393323783e0f6- First indexed
- 2018-09-10 20:30:08
- Last updated
- 2026-04-20 03:11:08
Antivirus detections
| Engine | Detection |
|---|---|
| MicroWorld-eScan | Trojan.Generic.22924631 |
| CAT-QuickHeal | Trojan.Sofacy |
| McAfee | RDN/Generic.dx |
| Cylance | Unsafe |
| TrendMicro | TROJ_GEN.R002C0ODR18 |
| Baidu | Win32.Trojan.WisdomEyes.16070401.9500.9927 |
| Symantec | Trojan.Gen.MBT |
| TrendMicro-HouseCall | TROJ_GEN.R002C0ODR18 |
| GData | Trojan.Generic.22924631 |
| Kaspersky | Trojan.Win32.Sofacy.ghr |
| BitDefender | Trojan.Generic.22924631 |
| NANO-Antivirus | Trojan.Win64.Sofacy.fcbmmt |
| Avast | Win64:Malware-gen |
| Tencent | Win32.Trojan.Sofacy.Pdwc |
| Ad-Aware | Trojan.Generic.22924631 |
| F-Secure | Trojan.Generic.22924631 |
| Invincea | heuristic |
| McAfee-GW-Edition | RDN/Generic.dx |
| Emsisoft | Trojan.Generic.22924631 (B) |
| Avira | TR/Sofacy.mshfs |
| MAX | malware (ai score=80) |
| Antiy-AVL | Trojan/Win32.Sofacy |
| Endgame | malicious (high confidence) |
| Arcabit | Trojan.Generic.D15DCD57 |
| AegisLab | Troj.W32.Sofacy!c |
| ZoneAlarm | Trojan.Win32.Sofacy.ghr |
| Microsoft | Trojan:Win32/Bitrep.A |
| ALYac | Trojan.Generic.22924631 |
| TACHYON | Trojan/W32.Sofacy.74240.B |
| Rising | Trojan.Sofacy!8.42F7 (CLOUD) |
| Fortinet | W32/Sofacy.GHQ!tr |
| AVG | Win64:Malware-gen |
| Panda | Trj/CI.A |
| CrowdStrike | malicious_confidence_60% (D) |
| Qihoo-360 | Win32/Trojan.c83 |
| APEX | Malicious |
| Alibaba | Trojan:Win32/Sofacy.afcf0cb2 |
| Antiy-AVL | Trojan/Generic.ASMalwS.25C8607 |
| Cynet | Malicious (score: 100) |
| ESET-NOD32 | a variant of Win64/TrickBot.BC |
| Elastic | malicious (high confidence) |
| FireEye | Generic.mg.47929fb6916ac4f0 |
| Ikarus | Trojan.Sofacy |
| Jiangmin | Trojan.Sofacy.au |
| K7AntiVirus | Riskware ( 0040eff71 ) |
| K7GW | Riskware ( 0040eff71 ) |
| MAX | malware (ai score=100) |
| MaxSecure | Trojan.Malware.8967925.susgen |
| McAfee | Artemis!47929FB6916A |
| McAfee-GW-Edition | BehavesLike.Win64.RansomGandcrab.lh |
| Microsoft | Trojan:Win32/Trickbot.SV!MSR |
| Paloalto | generic.ml |
| Sangfor | Trojan.Win32.Sofacy.ghr |
| SentinelOne | Static AI - Suspicious PE |
| Sophos | Mal/Generic-S |
| Symantec | Trojan.Gen.2 |
| VIPRE | Trojan.Win32.Generic!BT |
| Zillya | Trojan.TrickBot.Win64.117 |