MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 1b7be680d7951622cdd31760ceeb9211a7abac2ada25209919e0d8c720a550c5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 1b7be680d7951622cdd31760ceeb9211a7abac2ada25209919e0d8c720a550c5
SHA3-384 hash: 6822f4729ce539313113b9e76d8b2d6e35dbe7f988b0bb5e7dcc0b50811f25eb0e2bf237a6a2920b3d559e5331be4cb7
SHA1 hash: e3858403393c4e6c378f31501f456afd04024e48
MD5 hash: acd9035ffd488b6b1cc6d126fe5a32ee
humanhash: kentucky-south-social-winner
File name:acd9035ffd488b6b1cc6d126fe5a32ee.exe
Download: download sample
File size:1'039'060 bytes
First seen:2021-10-08 18:04:36 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash be41bf7b8cc010b614bd36bbca606973 (195 x LummaStealer, 126 x DanaBot, 63 x Vidar)
ssdeep 24576:HizM1ZtNZNFk66A13kOl7LLj1g6Dt8yXPYcHjtghE:CY1Z7F35fLjHDezcHjGa
TLSH T17C2523503E81C4B2E9E69EB0DE775A525877FE221D34C62E2340B6DE2873C41D926F72
File icon (PE):PE icon
dhash icon 0cfae274e0f0f430 (5 x DanaBot)
Reporter abuse_ch
Tags:exe

Intelligence


File Origin
# of uploads :
1
# of downloads :
363
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:

Behaviour
Creating a window
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
overlay packed
Result
Threat name:
Unknown
Detection:
suspicious
Classification:
n/a
Score:
24 / 100
Signature
Machine Learning detection for sample
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Sabsik
Status:
Malicious
First seen:
2021-10-08 18:05:15 UTC
AV detection:
13 of 45 (28.89%)
Threat level:
  5/5
Verdict:
unknown
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Enumerates physical storage devices
Unpacked files
SH256 hash:
1b7be680d7951622cdd31760ceeb9211a7abac2ada25209919e0d8c720a550c5
MD5 hash:
acd9035ffd488b6b1cc6d126fe5a32ee
SHA1 hash:
e3858403393c4e6c378f31501f456afd04024e48
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments