MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 294ac389aba42544fc3be63a2bea73a5142fb64c337267e7cd2b7cf17c92409e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 294ac389aba42544fc3be63a2bea73a5142fb64c337267e7cd2b7cf17c92409e
SHA3-384 hash: cf44b998d95dc3bdd105df4cfc10bded53fca4fe01989e3f61daba3135f60037f1c42b82fcc359c987449f8628b8068f
SHA1 hash: d22493986c4376c7eb59801fea56e6a268ff7137
MD5 hash: dd19ca05a74e259d162a968edfae830a
humanhash: five-aspen-ack-hawaii
File name:294ac389aba42544fc3be63a2bea73a5142fb64c337267e7cd2b7cf17c92409e
Download: download sample
File size:205'312 bytes
First seen:2020-05-06 18:20:46 UTC
Last seen:2020-05-06 19:04:19 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash a79e5f31c5a0fc2af224859bc798bc32
ssdeep 6144:/hPqu1MOrsn/U2261lTPnXvtdl2UblYlZU:/hPRMOrsn9lLznfgEYP
Threatray 30 similar samples on MalwareBazaar
TLSH D614AE2477D095F9E57BD5B5CA928500E2B238025730EB1F03B90376BF636A1EE2D792
Reporter sysopfb1
Tags:BazaarLoader TrickBot_Backdoor

Intelligence


File Origin
# of uploads :
2
# of downloads :
114
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win64.Trojan.Occamy
Status:
Malicious
First seen:
2020-05-06 18:36:22 UTC
File Type:
PE+ (Exe)
AV detection:
21 of 31 (67.74%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments