MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 506942d538391e6e2a86b26e01fddf127c329f06ad4fc1bde2838c76629c669d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 506942d538391e6e2a86b26e01fddf127c329f06ad4fc1bde2838c76629c669d
SHA3-384 hash: b4849fa0d575bbdc483104d35118fd264f4d392c2474e499213b55643caa1b46c6e4ce82b153584b1215b73cdaff4496
SHA1 hash: 1d698a68798f0b8e600046a5affd1cdc3af6dc15
MD5 hash: a86cbc4bcc7ee6fd12d93b4ef185da88
humanhash: three-failed-floor-north
File name:a86cbc4bcc7ee6fd12d93b4ef185da88.exe
Download: download sample
File size:5'123'616 bytes
First seen:2021-04-06 15:25:22 UTC
Last seen:2021-04-06 16:18:08 UTC
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 49152:kUlCX5h1mLjAzcvG53voOaks2oU8vaQmNpcvYm75UPCiYN3KVTq:cXb1mXA4J
TLSH B736E166A8E604F9C5BEE0348156A322B9723CA58B353FD31EC426A90775FE8773D314
Reporter abuse_ch
Tags:exe

Intelligence


File Origin
# of uploads :
2
# of downloads :
132
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
a86cbc4bcc7ee6fd12d93b4ef185da88.exe
Verdict:
No threats detected
Analysis date:
2021-04-06 16:04:54 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Clean
Maliciousness:
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
52 / 100
Signature
Machine Learning detection for sample
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win64.Trojan.WinGoGoCLR
Status:
Malicious
First seen:
2021-04-06 04:09:11 UTC
AV detection:
15 of 28 (53.57%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
506942d538391e6e2a86b26e01fddf127c329f06ad4fc1bde2838c76629c669d
MD5 hash:
a86cbc4bcc7ee6fd12d93b4ef185da88
SHA1 hash:
1d698a68798f0b8e600046a5affd1cdc3af6dc15
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe 506942d538391e6e2a86b26e01fddf127c329f06ad4fc1bde2838c76629c669d

(this sample)

  
Delivery method
Distributed via web download

Comments