MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 37340785e72d9ecb251e4a5367e9883e6b40bc203ece865e6ef2660eaa0d53f1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Phorpiex


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 37340785e72d9ecb251e4a5367e9883e6b40bc203ece865e6ef2660eaa0d53f1
SHA3-384 hash: 61ae8475261a21f7e3482d995a63f1e33f0c68791997914301bd30ac3a9887671b68d9e80040c45a58b839b0e2af6f49
SHA1 hash: 3bf97e2c126da8c650d5ccf5d855bcc9388a5249
MD5 hash: c8d9e183b79f9d564e62de43b5652bc4
humanhash: california-bravo-november-washington
File name:c8d9e183b79f9d564e62de43b5652bc4.dll
Download: download sample
Signature Phorpiex
File size:1'212'416 bytes
First seen:2020-12-24 16:40:21 UTC
Last seen:Never
File type:DLL dll
MIME type:application/x-dosexec
imphash 53e12281629a9cb39c469b34503a62b7 (1 x Phorpiex)
ssdeep 24576:Rf14ZjkEPSsM4w0sVMlB1FuPnYoCqyR9AgzaZteBPnFDB:RDErM4wNV4B1IfzC59AgDBPFN
Threatray 13 similar samples on MalwareBazaar
TLSH 5B4512D2E780C5A7E5744131C1A2FFF807B22CB9AD879617A6E87C0B3CBB6165E15207
Reporter abuse_ch
Tags:dll Phorpiex

Intelligence


File Origin
# of uploads :
1
# of downloads :
656
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Creating a window
Sending a UDP request
Result
Verdict:
8
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
72 / 100
Signature
Antivirus / Scanner detection for submitted sample
Antivirus detection for URL or domain
Multi AV Scanner detection for domain / URL
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win32.Downloader.SmallAgent
Status:
Malicious
First seen:
2020-12-22 09:32:00 UTC
AV detection:
19 of 28 (67.86%)
Threat level:
  3/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Suspicious use of WriteProcessMemory
Unpacked files
SH256 hash:
37340785e72d9ecb251e4a5367e9883e6b40bc203ece865e6ef2660eaa0d53f1
MD5 hash:
c8d9e183b79f9d564e62de43b5652bc4
SHA1 hash:
3bf97e2c126da8c650d5ccf5d855bcc9388a5249
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments