MalwareBazaar Database

You are browsing the malware sample database of MalwareBazaar. If you would like to contribute malware samples to the corpus, you can do so through either using the web upload or the API.


300

Submissions (past 24 hours)

Heodo

Most seen malware family (past 24 hours)

511'002

Malware samples in corpus


Using the form below, you can search for malware samples by a hash (MD5, SHA256, SHA1), imphash, tlsh hash, ClamAV signature, tag or malware family.

Browse Database


Search syntax is as follow: keyword:search_term

Following is a list of accepted keywords along with an example search_term

  • md5:1b109efade90ace7d953507adb1f1563 ( run)
  • sha256:11b16ba733f2f4f10ac58021eecaf5668551a73e2a1acfae99745c50bfccbb44 ( run)
  • signature:CobaltStrike ( run)
  • tag:TA505 ( run)
  • file_type:rtf ( run)
  • user:malware_traffic ( run)
  • clamav:SecuriteInfo.com.Artemis1FBB04F6EAF7.17086.UNOFFICIAL ( run)
  • yara:win_asyncrat_j1 ( run)
  • serial_number:51CD5393514F7ACE2B407C3DBFB09D8D ( run)
  • issuer_cn:Sectigo RSA Code Signing CA ( run)
  • imphash:756fdea446bc618b4804509775306c0d ( run)
  • tlsh:8DD484F440EF10A2F25F852936ADBE9401B2B1C7DBDA5E08137DE5311BBDA633A0564D ( run)
  • telfhash:52d0a7c198b4972c99e60578ed5c5bb29106216620070b20cf10a5d4d83b440f40db59 ( run)
  • dhash_icon:f8dcbeffbffecee8 ( run)

Date (UTC)SHA256 hashTypeSignatureTagsReporterDL
2022-05-17 10:414a994c8b2ef34879d11468cd8bc195877f8585b6254ff75f134561156cd53264Executable exeSnakeKeyloggerexe SnakeKeylogger @abuse_ch
2022-05-16 11:2970a4fde5fed98777b972ece79b8c1d7afe5d278539220a743a86cd03e12dc07eExecutable exeSnakeKeyloggerexe SnakeKeylogger @abuse_ch
2022-05-16 09:182191a4ebf32c079a54233a65aa7bfb67e1b8824e03e9387e9c843713c6e927f2Executable exeFormbookexe FormBook @adrian__luca
2022-05-16 09:17b447c6ac213dc6c0f6015a933d786e3f7c7aea09c4baf9b8ef912ffaa4e35dddExecutable exeAgentTeslaAgentTesla exe @adrian__luca
2022-05-15 21:14373a2624949fa31d5837480e9e80434f134cf8abf294e0c06c93f718bf5bd0f0Executable exeFormbookexe FormBook @TeamDreier
2022-05-12 08:203b7797226ad94650caea53b5fbc430091fbb9346c88966b83f6402d0cd05904bExecutable exeFormbook32 exe FormBook trojan @zbetcheckin
2022-05-12 06:316030c4836fae1877dd0b6906d812a0db5bf9901e6eb9c0a6a6a3f7b35f59a2ecExecutable exeSnakeKeyloggerexe SnakeKeylogger @abuse_ch
2022-05-12 06:112a3493913b3be215927ca464ff826dd910c017edd9795c1ed9464bd90f66664aExecutable exeLodaexe Loda LodaRAT @AndreGironda
2022-05-11 14:01900412d2feaf6d59fb84d51f31945d6a0d78d9155d9d12d11687152d2bb2b6b0Executable exeLokiexe Loki @James_inthe_box
2022-05-11 08:40de42477eb270c42a2eaf57e6efb465263fc02e72e6c8442fdbd27aa3bd8e76a5Executable exeNanoCoreexe NanoCore @SecuriteInfoCom
2022-05-10 18:21c737bfd872527544c14ec50c589d0ff5bc26f8d643bc4441d190efe872a5b05fExecutable exeLokiexe Loki @abuse_ch
2022-05-10 16:4520d39ac9b13d6cb203510ff5c317cccbbe7bc35967d2c85d1d6bffd792d975acExecutable exeAveMariaRATAveMariaRAT exe @pr0xylife
2022-05-10 16:44edb8f0857fece22a2b512991fe1acca379f43549a420340d3097744222d53db8Executable exeAgentTeslaAgentTesla exe @pr0xylife
2022-05-10 15:59bdf8f0fe0af3da8a08f2d5ba8baeec69b75565cf09fb160d58297b6b33a956b6Executable exeFormbook32 exe FormBook trojan @zbetcheckin
2022-05-10 15:515045e619d346019e31996cb5c4a64bcb3efc4533a0d08dad5e9cfc9e18619ee9Executable exeFormbookexe FormBook @SecuriteInfoCom
2022-05-10 15:49efdd3220b1773e040645935cb67e520893983ee8a1f5d0c08f8b5b995128a989Executable exeAgentTesla32 AgentTesla exe trojan @zbetcheckin
2022-05-10 15:15db5eb79f5123b64dee1703eca26c91c3e4caa69b4515293778962c54eaded05dExecutable exeAgentTeslaAgentTesla exe @abuse_ch
2022-05-10 15:13d6c6d43adb85a46f4b474ac510fd9d6fe429040e8e853944be6654e0c0e2153aExecutable exeRemcosRATexe RAT RemcosRAT @abuse_ch
2022-05-10 14:49f381e338212079c3a03fbbb532cdec44b1d27db03e8cc4c47408ef038885d934Executable exeSnakeKeyloggerexe SnakeKeylogger @cocaman
2022-05-10 13:3967d19757789ca3ea2609a0f4588da0303fcb1d1f52df9b4051b24174a3918b9cExecutable exeLokiexe Loki @pr0xylife
2022-05-10 13:2172dfd5c2dbae843e6a397b01f8b31c2346522a7e19540c2a48d8f3d22b7fd22eExecutable exeAgentTeslaAgentTesla exe @pr0xylife
2022-05-10 12:5324a38f571f2a7998676bdf0eae3d7a095cb8e7e55c5b1fac8e49dd1afa582354Executable exeFormbookexe FormBook @James_inthe_box
2022-05-10 12:536f118b0f6a4e423c9629758baaa549b0ac361c7dff187cd41edd1ebf0e9ff35dExecutable exeAgentTeslaAgentTesla exe @GovCERT_CH
2022-05-10 12:51bf8d39c70e2b7b72595bda41242829ba290298acae8d0dda2c5d7acce4d5dec9Executable exeAveMariaRATAveMariaRAT exe @SecuriteInfoCom
2022-05-10 12:50420697b1c59ae0623bbfaefba4132832335fd11663c97ca5c47fc57d64d59947Executable exeLokiexe Loki @abuse_ch
2022-05-10 12:3704e123cec63f36e0860b6917805f83fe0fedc68ea1e5645747936743e83f6fd3Executable exeFormbookexe FormBook @James_inthe_box
2022-05-10 12:22fa4f2923fcb04e30ee478e5ec129b5e46e68824e5f157be62b518dfbb265d707Executable exeFormbookexe FormBook @GovCERT_CH
2022-05-10 12:14855bac33f0a992ba7ab854f25b99a2404b125b999e4ef6b5a29c1ab7e9f85f9eExecutable exeAgentTeslaAgentTesla exe @malwarelabnet
2022-05-10 12:14568dc8c022d63fa4aab1c498f3075470dccd13821b6a2b677e12538def7c9fbbExecutable exeAgentTeslaAgentTesla exe @malwarelabnet
2022-05-10 12:083cc9b252ff025191c7ca6413ec68089630073126ae82ee276acec334903a07c2Executable exeFormbookexe FormBook @pr0xylife
2022-05-10 12:08b8d4ae77768d8215b18cec06a4d0266caa302ef62715cc16e0c521cf8a90b686Executable exeFormbook32 exe FormBook trojan @zbetcheckin
2022-05-10 11:46816f4764cc13ffb9ac1b6d35ddb22d1d7a26091a367dbc07906ae24d4b6db469Executable exeLokiexe Loki @GovCERT_CH
2022-05-10 11:4161d0a1d8b04afa7bf63228748034ed0018157c3f902cdb6069a928c589b63729Executable exeAgentTeslaAgentTesla exe @GovCERT_CH
2022-05-10 11:33c94fe36f9018fbdab84224ac1bd0d2cb6840cdfecb8ebf832050a807b6a6bb98Executable exeAgentTeslaAgentTesla exe @abuse_ch
2022-05-10 11:32b42dbca35ee7fb914d2566cd137fa7f8c69036e6824ac3dc2bf7d50198742c5eExecutable exeLokiexe Loki @abuse_ch
2022-05-10 11:315a5057b3be1ee547ce5183f0266f926b1d7ac523bbe7b97e869a4c700ca2123aExecutable exeLokiexe Loki @abuse_ch
2022-05-10 11:29af66baeaeaf66b03d22bfba26cfaff343489fdf3eccb9e6078017c93fd6155c5Executable exeNanoCoreexe NanoCore RAT @abuse_ch
2022-05-10 11:23c3f5b91bd4a07b58d11c41839a3f00c55767e5529fb205310f2a5581ab5139bdExecutable exeAgentTeslaAgentTesla exe @GovCERT_CH
2022-05-10 11:144bb89e514f70ca7c25f521438eaa81ae06081d9340dfe8c13dacad6af66c4b44Executable exeAgentTeslaAgentTesla exe @GovCERT_CH
2022-05-10 10:56e7962cdd23b186bb033234ee3275fef94db2650f2a15fd78b25c8a2662effc80Executable exeFormbookexe FormBook @GovCERT_CH
2022-05-10 10:54da58a512dade08a3539fc4580884e30c389a4f8127f155ddc43389a38b9abee1Executable exeAgentTeslaAgentTesla exe geo Telegram TUR @abuse_ch
2022-05-10 10:538349663afe02db06f9c898f0a209f17a3ea558f5678a9479969d09efb22f10caExecutable exeLokiDHL exe Loki @abuse_ch
2022-05-10 10:53458eba038daed2837d99a29b04034bdb81ec297fdc4d49fc5c91e97e7d49a8a4Executable exeLokiDHL exe Loki @abuse_ch
2022-05-10 10:3685f7f26cd9cfb9ab367d083f60b48e1594b1eadf8dd1a792c347273684855013Executable exeSnakeKeyloggerexe SnakeKeylogger @abuse_ch
2022-05-10 10:357f047a6d09ec86f517d85635ca31c9afef7baedac41e41e1e70316c32803ab5dExecutable exeSnakeKeyloggerexe SnakeKeylogger @abuse_ch
2022-05-10 10:24fc3496cf72612e8bed8e7a7d461b8c3a30fb7e5739149c26dfaf1e03ff43f442Executable exeAgentTeslaAgentTesla exe @GovCERT_CH
2022-05-10 10:00ef633a7251fcfcf787c5edd0885d1a5cadfca45ab9407eee213491b567e45231Executable exeAgentTesla32 AgentTesla exe trojan @zbetcheckin
2022-05-10 09:579b9e7f65b6e87acaeb34f568af68ba6c2246cf320329d56af03673f5f3908ddbExecutable exeAgentTeslaAgentTesla exe @pr0xylife
2022-05-10 09:516e5ce2c28b65e3f50c89ee799de9c047c07ec4c27b4d4b8b6f4f202b1e8d557aExecutable exeNanoCoreexe NanoCore RAT @abuse_ch
2022-05-10 09:11f1c00065ce96cca1c941de4e7a81ab0eba9655357be6598c7fda0c2877af8d96Executable exeSnakeKeyloggerexe SnakeKeylogger @GovCERT_CH
2022-05-10 09:0123fad248d82e34506daaa185bf00863e33774247c563a7ba49d9cfb11110cca9Executable exeLokiexe Loki @abuse_ch
2022-05-10 08:4856ed66657e25c863a4b008512dbc21cf29225dbf13d67a5d1141e03ab04c8804Executable exeAgentTeslaAgentTesla exe payment @cocaman
2022-05-10 08:387c36df9714ab3ef839d7a27dbc8bc0166f6a7b5fd738f7d744bf99bbf9b4be02Executable exeAgentTeslaAgentTesla exe @SecuriteInfoCom
2022-05-10 08:07c3b210b8e280c007113cd9de55d3ac1b72babfb8fba27768651e4287641b5da6Executable exeAveMariaRATAveMariaRAT exe WarzoneRAT @GovCERT_CH
2022-05-10 07:56c7ef2edde21ad380720affbcd1bf24969069070aed8ee1195bccc5a92eabdd97Executable exeSnakeKeyloggerexe SnakeKeylogger @cocaman
2022-05-10 06:47374021104230081119b9a1d7ee126b573f8992efb3b1017ef8422f7e004ddf71Executable exeLokiexe Loki @SecuriteInfoCom
2022-05-10 06:17d3839df3d63d89f901e103a3b303a1223ec04c93bde7fd7e8ae17f70a3c26385Executable exeAgentTeslaAgentTesla exe @GovCERT_CH
2022-05-10 05:5297b77342fc8a6f6f6c6afae21cc499f02384d5f77c63f385f67a2090e5c51c53Executable exeLokiexe Loki @GovCERT_CH
2022-05-10 05:50149f005f1bf1a73b2bdc3cf829e6f143206c3e24cf1286292ff31858ceca3279Executable exeNanoCoreexe NanoCore @lowmal3
2022-05-10 05:4921b92ed915dcf28376d4e057312cc44a76ca485282a06dbbe1a8f64f9a1112c8Executable exeAgentTeslaAgentTesla exe @lowmal3
2022-05-10 05:413eb70bca52527d6d28883ad69fcd329841591062fa58bd2f57ec31d530aec533Executable exeLokiexe Loki @abuse_ch
2022-05-10 05:17b1a00f42a2ebef3749c44d4e8fb79eeff23949c4f4f4926b2437f4e02198d74fExecutable exeLokiexe Loki @GovCERT_CH
2022-05-10 04:385a6ef999cfca382c8c92a11d2100fe5d9866402262ef6ddbacafda527dfb0904Executable exeAgentTeslaAgentTesla exe @SecuriteInfoCom
2022-05-10 04:3842538c71c23cda915aff772266da886e27beeadec042ccf17c5ebb896b56a537Executable exeAgentTeslaAgentTesla exe @SecuriteInfoCom
2022-05-10 04:3146956dd9cd5e3f62c79127e5e8bcd3b420695a0112df256aa07364bc6a32e697Executable exeFormbookexe FormBook xloader @GovCERT_CH
2022-05-10 03:57b5acfa6e4c5b96d5f45f98733f8598cffe32b077c5ff413a93ae9c6a30b9a51eExecutable exeAgentTeslaAgentTesla exe @GovCERT_CH
2022-05-10 03:22ccaa83564fadff981961b0098a3cdeccc8f46800892fe00110b40562506a7e1bExecutable exeAgentTeslaAgentTesla exe @GovCERT_CH