MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 245a243fc6e0cd68c80b5161a79134479578b8e340be3c3b9b58a34d4c166ed1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 245a243fc6e0cd68c80b5161a79134479578b8e340be3c3b9b58a34d4c166ed1
SHA3-384 hash: cb94cdcc6d3ddba6b0d9e91a6b016adf0f98989f752deacdd938957bb1d2c4b077cf800d52ef369bfa2f286cc0bae055
SHA1 hash: 0b48952329ab251b15b54ac512934c78dac3c250
MD5 hash: 5939374ad767e394adf3fac4492b2c84
humanhash: undress-queen-freddie-six
File name:5939374ad767e394adf3fac4492b2c84.exe
Download: download sample
File size:5'323'868 bytes
First seen:2021-03-11 07:21:57 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 49152:4X45IjX6BQZsiONZglv5OLRvSguk1xIn2jsrJIb5UgtvL11jIbt8Q0ev/8:qX6BQZOwC
TLSH 6936E026A8E604F9C6BEE0348152A322B9723CB487357BD71ED426AA0775FE4773D314
Reporter abuse_ch
Tags:exe

Intelligence


File Origin
# of uploads :
1
# of downloads :
95
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
5939374ad767e394adf3fac4492b2c84.exe
Verdict:
No threats detected
Analysis date:
2021-03-11 07:23:40 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Clean
Maliciousness:
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
52 / 100
Signature
Machine Learning detection for sample
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win64.Trojan.WinGoGoCLR
Status:
Malicious
First seen:
2021-03-11 07:22:07 UTC
AV detection:
9 of 47 (19.15%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
245a243fc6e0cd68c80b5161a79134479578b8e340be3c3b9b58a34d4c166ed1
MD5 hash:
5939374ad767e394adf3fac4492b2c84
SHA1 hash:
0b48952329ab251b15b54ac512934c78dac3c250
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe 245a243fc6e0cd68c80b5161a79134479578b8e340be3c3b9b58a34d4c166ed1

(this sample)

  
Delivery method
Distributed via web download

Comments