MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8f327b1ce9510b718d832e0d0d38caf1aa73c3af31f6a915442f5b90015e7e6e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 8f327b1ce9510b718d832e0d0d38caf1aa73c3af31f6a915442f5b90015e7e6e
SHA3-384 hash: 738b81210d338ebb203fbe9fed593b4327d40167ed764011cb2c185c767075e389f1ff8a87d5da3a47f97f93a913f371
SHA1 hash: 1ad4753a3620c31661fe6126a989b0a6fa7ba153
MD5 hash: 061b50bde4b3f18a1e8c3c2764b32e92
humanhash: blue-cat-solar-violet
File name:8f327b1ce9510b718d832e0d0d38caf1aa73c3af31f6a915442f5b90015e7e6e
Download: download sample
File size:4'417'716 bytes
First seen:2020-06-03 09:19:27 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash dbbc718f7f0ca351f7a0e645fde2dbea
ssdeep 98304:3+I3L/wlG4UZej0jvy5SbWf+YFCbJBAUZLs2K5:3HPvyQaf+HbJVDK5
Threatray 58 similar samples on MalwareBazaar
TLSH 3016D103F2818472D81719700C77673A6A36FF116F258A93B794FE6D1D732E2973628A
Reporter raashidbhatt
Tags:exe

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Vmpbad
Status:
Malicious
First seen:
2020-06-04 04:29:30 UTC
AV detection:
44 of 48 (91.67%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  5/10
Tags:
n/a
Behaviour
Modifies system certificate store
Suspicious behavior: RenamesItself
Suspicious use of SetWindowsHookEx
Suspicious use of NtSetInformationThreadHideFromDebugger
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments