MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2120d92e96ad3e11b8e35cd6cf867e95c31b64d4d4e43c661560b6ab281bd306. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



DiamondFox


Vendor detections: 9


Intelligence 9 IOCs 1 YARA File information Comments

SHA256 hash: 2120d92e96ad3e11b8e35cd6cf867e95c31b64d4d4e43c661560b6ab281bd306
SHA3-384 hash: 9995ed560083980d7cb46c66271d28f8e73221cbca35b1b70532b153b7afb5a000782c6143ef89cd8fcb64afc4d456ae
SHA1 hash: ae4ee80e9d7c315b66fc3e4f62d9ae1d25463ccc
MD5 hash: 4cc2560de1b2a15d3c8b8580154154af
humanhash: twelve-kitten-alanine-missouri
File name:2120D92E96AD3E11B8E35CD6CF867E95C31B64D4D4E43.exe
Download: download sample
Signature DiamondFox
File size:2'548'449 bytes
First seen:2021-08-29 23:35:57 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash c05041e01f84e1ccca9c4451f3b6a383 (142 x RedLineStealer, 109 x GuLoader, 64 x DiamondFox)
ssdeep 49152:EgBNMZwos3cWf3pyjfoQbdBXPUKwXGEOBRT2Os3ch1MVje8bSO:JBNz7f3UxtsKc5soZe83
Threatray 439 similar samples on MalwareBazaar
TLSH T19CC533240EC0DDA3E5A5583687271EA4F2F4B974A875023BC3B5E59AF446BF2CCB1528
dhash icon b2a89c96a2cada72 (2'283 x Formbook, 981 x Loki, 803 x AgentTesla)
Reporter abuse_ch
Tags:DiamondFox exe


Avatar
abuse_ch
DiamondFox C2:
http://5.181.156.252/