MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3c2a6706749ae6f13563a9e632fcf1f2428149c1fd41a815c51e15cfa2791e0e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Dridex


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 3c2a6706749ae6f13563a9e632fcf1f2428149c1fd41a815c51e15cfa2791e0e
SHA3-384 hash: bcdd89f856c8f41f49fdd7d58fa72461092b25fe8b2f84b2aa8248d72be054c5e35187ea53ae935e1b9404d85e46bd20
SHA1 hash: 325f462a1ebeb3d5f9734d09e521b410f1e0323c
MD5 hash: ba609e99c62506c02ed2fcbc1306ae82
humanhash: missouri-steak-florida-skylark
File name:ba609e99c62506c02ed2fcbc1306ae82.dll
Download: download sample
Signature Dridex
File size:53'293 bytes
First seen:2020-10-16 14:25:49 UTC
Last seen:Never
File type:DLL dll
MIME type:application/x-dosexec
ssdeep 1536:LrS3ixBjj5UQaW75WAY6TtnfLGuw0lrBaLmg8/:nS3ixdj5Ut+cd6T9f40BN/
Threatray 25 similar samples on MalwareBazaar
TLSH 27339D03DAEAD6F5C5E690B9883BD26427635CE7531478E607F06B2DDF229826B30E41
Reporter abuse_ch
Tags:dll Dridex

Intelligence


File Origin
# of uploads :
1
# of downloads :
140
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Sending a UDP request
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
52 / 100
Signature
Machine Learning detection for sample
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Ymacco
Status:
Malicious
First seen:
2020-10-16 14:27:06 UTC
AV detection:
28 of 47 (59.57%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Suspicious use of WriteProcessMemory
Unpacked files
SH256 hash:
3c2a6706749ae6f13563a9e632fcf1f2428149c1fd41a815c51e15cfa2791e0e
MD5 hash:
ba609e99c62506c02ed2fcbc1306ae82
SHA1 hash:
325f462a1ebeb3d5f9734d09e521b410f1e0323c
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Dridex

DLL dll 3c2a6706749ae6f13563a9e632fcf1f2428149c1fd41a815c51e15cfa2791e0e

(this sample)

  
Delivery method
Distributed via web download

Comments