MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cacf7b21c88cb279760ef05353b98e99234ae64ee0e94bf5639c48a00c7ca462. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry


Intelligence File information Yara Comments

SHA256 hash: cacf7b21c88cb279760ef05353b98e99234ae64ee0e94bf5639c48a00c7ca462
SHA3-384 hash: 26432efa53376ada05251ec726b7253450803afa0537de5d6ede9c98971ec3595b6f5669358e5755bfbe65b3ee2d109a
SHA1 hash: 1c0f43d3bfe42f00bbb819ea27960d986ec11a92
MD5 hash: d4bc91c21112405f84257692ee789925
humanhash: spaghetti-chicken-lamp-october
File name:BlazeCleanerV4.bin
Download: download sample
Signature n/a
File size:11'264 bytes
First seen:2020-07-31 12:09:33 UTC
Last seen:2020-08-04 11:36:38 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash f34d5f2d4577ed6d9ceec516c1f5a744
ssdeep 192:vYdDgfWb+00Iz+Ijzh7mUxvJ8GUc5tuTpqKi3hYV4:vY9db+FBCzhiqJ8GUc5tuTpqKi3hC4
TLSH 2D32A406BAEC4221FDBA1E7529BD82410A33B65744358BAD34AD2488EF577748B93760
Reporter @JAMESWT_MHT

Intelligence


File Origin
# of uploads :
2
# of downloads :
36
Origin country :
IT IT
Mail intelligence
No data
Vendor Threat Intelligence
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
48 / 100
Signature
Binary contains a suspicious time stamp
Machine Learning detection for sample
Behaviour
Behavior Graph:
behaviorgraph top1 signatures2 2 Behavior Graph ID: 255362 Sample: BlazeCleanerV4.bin Startdate: 31/07/2020 Architecture: WINDOWS Score: 48 10 Machine Learning detection for sample 2->10 12 Binary contains a suspicious time stamp 2->12 6 BlazeCleanerV4.exe 1 2->6         started        process3 process4 8 conhost.exe 6->8         started       
Threat name:
ByteCode-MSIL.Downloader.Small
Status:
Malicious
First seen:
2020-07-31 12:11:04 UTC
AV detection:
16 of 31 (51.61%)
Threat level
  3/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Threat name:
Trojan
Score:
1.00

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments