{
	"id": "c5ea9689-d40a-4bf7-87c8-6b50723b2996",
	"created_at": "2026-04-06T00:06:43.47484Z",
	"updated_at": "2026-04-10T03:32:46.071527Z",
	"deleted_at": null,
	"sha1_hash": "7e522e77107519f26daec4330a5cb108f1cd55ca",
	"title": "VirusTotal - File - b5c30a147d6529be8d37b9bce653d8eb8c9a1b723b2edcdf971ea2bb28097629",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 57119,
	"plain_text": "SUMMARY DETECTION DETAILS RELATIONS BEHAVIOR COMMUNITY\r\nJoin our Community and enjoy additional community insights and crowdsourced detections, plus an\r\nAPI key to automate checks.\r\nAhnLab-V3 Infostealer/Win.Generic.C5571763\r\nArctic Wolf Unsafe\r\nBkav Pro W32.AIDetectMalware.CS\r\nSecureAge Malicious\r\nVirIT Trojan.Win32.MSIL_Heur.A\r\nAcronis (Static ML) Undetected\r\nAlibaba Undetected\r\nAliCloud Undetected\r\nALYac Undetected\r\nAntiy-AVL Undetected\r\nArcabit Undetected\r\nAvast Undetected\r\nAVG Undetected\r\nAvira (no cloud) Undetected\r\nBaidu Undetected\r\nBitDefender Undetected\r\nClamAV Undetected\r\nCMC Undetected\r\nCrowdStrike Falcon Undetected\r\nCTX Undetected\r\nCynet Undetected\r\nDeepInstinct Undetected\r\nDrWeb Undetected\r\nElastic Undetected\r\nEmsisoft Undetected\r\neScan Undetected\r\nESET-NOD32 Undetected\r\nSecurity vendors' analysis Do you want to automate checks?\r\nb5c30a147d6529be8d37b9bce653d8eb8c9a1b Sign in Sign up\r\nWe use cookies and related technologies to remember user preferences, for security, to\r\nanalyse our traffic, and to enable website functionality. Learn more about cookies in our\r\nPrivacy Notice. Ok\r\nhttps://www.virustotal.com/gui/file/b5c30a147d6529be8d37b9bce653d8eb8c9a1b723b2edcdf971ea2bb28097629\r\nPage 1 of 3\n\nFortinet Undetected\r\nGData Undetected\r\nGoogle Undetected\r\nGridinsoft (no cloud) Undetected\r\nHuorong Undetected\r\nIkarus Undetected\r\nJiangmin Undetected\r\nK7AntiVirus Undetected\r\nK7GW Undetected\r\nKaspersky Undetected\r\nKingsoft Undetected\r\nLionic Undetected\r\nMalwarebytes Undetected\r\nMaxSecure Undetected\r\nMcAfee Scanner Undetected\r\nMicrosoft Undetected\r\nNANO-Antivirus Undetected\r\nPalo Alto Networks Undetected\r\nPanda Undetected\r\nQuickHeal Undetected\r\nRising Undetected\r\nSangfor Engine Zero Undetected\r\nSentinelOne (Static ML) Undetected\r\nSkyhigh (SWG) Undetected\r\nSophos Undetected\r\nSUPERAntiSpyware Undetected\r\nSymantec Undetected\r\nTACHYON Undetected\r\nTEHTRIS Undetected\r\nTencent Undetected\r\nTrapmine Undetected\r\nTrellix (ENS) Undetected\r\nTrellix (HX) Undetected\r\nTrendMicro Undetected\r\nTrendMicro-HouseCall Undetected\r\nVarist Undetected\r\nVBA32 Undetected\r\nVIPRE Undetected\r\nSign in Sign up\r\nWe use cookies and related technologies to remember user preferences, for security, to\r\nanalyse our traffic, and to enable website functionality. Learn more about cookies in our\r\nPrivacy Notice. Ok\r\nhttps://www.virustotal.com/gui/file/b5c30a147d6529be8d37b9bce653d8eb8c9a1b723b2edcdf971ea2bb28097629\r\nPage 2 of 3\n\nViRobot Undetected\r\nWebroot Undetected\r\nWithSecure Undetected\r\nXcitium Undetected\r\nYandex Undetected\r\nZillya Undetected\r\nZoner Undetected\r\nAvast-Mobile Unable to process file type\r\nBitDefenderFalx Unable to process file type\r\nSymantec Mobile Insight Unable to process file type\r\nTrustlook Unable to process file type\r\nSign in Sign up\r\nWe use cookies and related technologies to remember user preferences, for security, to\r\nanalyse our traffic, and to enable website functionality. Learn more about cookies in our\r\nPrivacy Notice. Ok\r\nhttps://www.virustotal.com/gui/file/b5c30a147d6529be8d37b9bce653d8eb8c9a1b723b2edcdf971ea2bb28097629\r\nPage 3 of 3",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"Malpedia"
	],
	"references": [
		"https://www.virustotal.com/gui/file/b5c30a147d6529be8d37b9bce653d8eb8c9a1b723b2edcdf971ea2bb28097629"
	],
	"report_names": [
		"b5c30a147d6529be8d37b9bce653d8eb8c9a1b723b2edcdf971ea2bb28097629"
	],
	"threat_actors": [
		{
			"id": "3fff98c9-ad02-401d-9d4b-f78b5b634f31",
			"created_at": "2023-01-06T13:46:38.376868Z",
			"updated_at": "2026-04-10T02:00:02.949077Z",
			"deleted_at": null,
			"main_name": "Cleaver",
			"aliases": [
				"G0003",
				"Operation Cleaver",
				"Op Cleaver",
				"Tarh Andishan",
				"Alibaba",
				"TG-2889",
				"Cobalt Gypsy"
			],
			"source_name": "MISPGALAXY:Cleaver",
			"tools": [],
			"source_id": "MISPGALAXY",
			"reports": null
		}
	],
	"ts_created_at": 1775434003,
	"ts_updated_at": 1775791966,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/7e522e77107519f26daec4330a5cb108f1cd55ca.pdf",
		"text": "https://archive.orkl.eu/7e522e77107519f26daec4330a5cb108f1cd55ca.txt",
		"img": "https://archive.orkl.eu/7e522e77107519f26daec4330a5cb108f1cd55ca.jpg"
	}
}