MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5120337f6b92a0a69725190a2df188a2cec913531e53a923160fd9d0a69c8efc. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 5120337f6b92a0a69725190a2df188a2cec913531e53a923160fd9d0a69c8efc
SHA3-384 hash: 33c26d3675cb1b6014f64d2ce95a5568b6aa90b53f94d8008568429647b7da163349a14fc2f0f79222e5c3bcc4b03e3e
SHA1 hash: 30097ed17df74d307dc3c1b6bece3b62146bea58
MD5 hash: ba04785d6c06fdf26ccccf99493ae352
humanhash: seven-grey-magnesium-hamper
File name:ba04785d6c06fdf26ccccf99493ae352.exe
Download: download sample
File size:6'946'735 bytes
First seen:2022-03-11 19:34:44 UTC
Last seen:2022-03-11 21:51:51 UTC
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 196608:tsl06Grlre2pGEaOcf2NnG5PExW+M51p8VGE+LX42B3msN:tsiXK2YEwrjPp86znBn
TLSH T13B6633D8D40ED2308A73CF965138D25F9861274A69E7C922C80E16EA7CEE9B5F4071F7
Reporter abuse_ch
Tags:exe

Intelligence


File Origin
# of uploads :
2
# of downloads :
201
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:
Verdict:
Likely Malicious
Threat level:
  7.5/10
Confidence:
100%
Tags:
overlay packed
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
48 / 100
Signature
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win64.Trojan.Generic
Status:
Suspicious
First seen:
2022-03-11 11:42:50 UTC
File Type:
PE+ (Exe)
AV detection:
4 of 42 (9.52%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  8/10
Tags:
upx
Unpacked files
SH256 hash:
5120337f6b92a0a69725190a2df188a2cec913531e53a923160fd9d0a69c8efc
MD5 hash:
ba04785d6c06fdf26ccccf99493ae352
SHA1 hash:
30097ed17df74d307dc3c1b6bece3b62146bea58
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe 5120337f6b92a0a69725190a2df188a2cec913531e53a923160fd9d0a69c8efc

(this sample)

  
Delivery method
Distributed via web download

Comments