🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 07a3dcb8d9b062fb480692fa33d12da05c21f544492cbaf9207956ac647ba9ae. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



LockBit


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 07a3dcb8d9b062fb480692fa33d12da05c21f544492cbaf9207956ac647ba9ae
SHA3-384 hash: c7d3bf86bbf92cbee661ea639a0b9d8768297809db4504d24fe5447feb6656cc528e7a5e3222af20f77dca3616c8ed14
SHA1 hash: 419a7631f06ed78a711f18323f5dee882daaa409
MD5 hash: b776a331c15131ff66ae7df73968e023
humanhash: december-floor-vegan-robin
File name:07a3dcb8d9b062fb480692fa33d12da05c21f544492cbaf9207956ac647ba9ae
Download: download sample
Signature LockBit
File size:53'760 bytes
First seen:2021-08-18 15:34:44 UTC
Last seen:2022-06-30 11:54:25 UTC
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 768:cHPkQ2Bsnwhx9fhkow8yb6a9IbFHh/ur1AdWgE8b2iUK7m0U7K0:5qq9Zko5ybP90B2hIWzU2irD61
TLSH T12333F883DA910077C0B12074A5F76676DDB6DA33B3D00127AFC69420967C9D9EBAF386
Reporter JAMESWT_WT
Tags:exe lockbit Ransomware stealbit

Intelligence


File Origin
# of uploads :
3
# of downloads :
1'406
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
07a3dcb8d9b062fb480692fa33d12da05c21f544492cbaf9207956ac647ba9ae.exe
Verdict:
No threats detected
Analysis date:
2021-08-18 15:39:55 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Clean
Maliciousness:

Behaviour
Connection attempt
DNS request
Sending a UDP request
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
60 / 100
Signature
Antivirus / Scanner detection for submitted sample
Machine Learning detection for sample
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win32.Spyware.Stealbit
Status:
Malicious
First seen:
2021-08-18 01:38:00 UTC
File Type:
PE (Exe)
AV detection:
28 of 47 (59.57%)
Threat level:
  2/5
Verdict:
unknown
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
07a3dcb8d9b062fb480692fa33d12da05c21f544492cbaf9207956ac647ba9ae
MD5 hash:
b776a331c15131ff66ae7df73968e023
SHA1 hash:
419a7631f06ed78a711f18323f5dee882daaa409
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments