MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 51d1b359ca7b1f63a4662c254e4c7a2e91f22741041e1e16cd5071a7b42b7c5e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 51d1b359ca7b1f63a4662c254e4c7a2e91f22741041e1e16cd5071a7b42b7c5e
SHA3-384 hash: b407f2ad87704bf1f984aed6a8aa805e09cf31505f58f0be1cd04530d9bea9a16b9b1656d921b7841385674079ae9be6
SHA1 hash: 444a8a2979c696f4823624663901912420ec08eb
MD5 hash: 9926560e9b6a306489a86e3fd333006d
humanhash: oregon-nitrogen-blossom-winner
File name:9926560e9b6a306489a86e3fd333006d.exe
Download: download sample
File size:134'334 bytes
First seen:2022-02-20 16:57:23 UTC
Last seen:2022-02-20 18:56:45 UTC
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 3072:ZCfy438xJ9gyWxtiXNY448ryrgody9Oj68SmJiG691uL3BIY:Y6gyWxYXNY44MwgodHRKuL3eY
TLSH T1FAD34A00AB90D035F5B712F8957993ADA93E7AB16B3095CF83D41AE95235AE0EC3134F
Reporter abuse_ch
Tags:exe

Intelligence


File Origin
# of uploads :
2
# of downloads :
282
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
overlay packed
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
48 / 100
Signature
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Raccrypt
Status:
Malicious
First seen:
2022-02-20 16:58:11 UTC
File Type:
PE (Exe)
AV detection:
14 of 28 (50.00%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
51d1b359ca7b1f63a4662c254e4c7a2e91f22741041e1e16cd5071a7b42b7c5e
MD5 hash:
9926560e9b6a306489a86e3fd333006d
SHA1 hash:
444a8a2979c696f4823624663901912420ec08eb
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe 51d1b359ca7b1f63a4662c254e4c7a2e91f22741041e1e16cd5071a7b42b7c5e

(this sample)

  
Delivery method
Distributed via web download

Comments