MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5d2a136f78cb2d4ccfa3b15c45153373689adb9ae4c23f0b84993dbc0036ef7e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Jadtre


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 5d2a136f78cb2d4ccfa3b15c45153373689adb9ae4c23f0b84993dbc0036ef7e
SHA3-384 hash: 04fb1bd7e1ff5d9ea8c4e85c4fe1e23a70c269eddbb15d20d2868f66eeba3b40a7b18d28070d9cd3e4b9cc8e2461b496
SHA1 hash: a8198b9db7b1e77fab35d5f49adc493de719f76a
MD5 hash: 2f889e62cdb630528bb5b06ce3eb4bc0
humanhash: tango-monkey-october-eight
File name:ab007382dacd0cbb27ead57ac6e8f740
Download: download sample
Signature Jadtre
File size:27'136 bytes
First seen:2020-11-17 14:51:33 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash 87bed5a7cba00c7e1f4015f1bdae2183 (3'034 x Jadtre, 23 x IcedID, 17 x Blackmoon)
ssdeep 768:/d5u7mNGtyVfz1lQGPL4vzZq2oZ7Gtx8xTi:/d5z/fhCGCq2w7x
Threatray 1'255 similar samples on MalwareBazaar
TLSH 0AC2C0B2CE8084FFC0CB3432204512DB9F575A72556A68A7A710D81E7DBCDE0EA7A753
Reporter seifreed

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Creating a file in the %temp% directory
Creating a process from a recently created file
Creating a window
Changing an executable file
DNS request
Modifying an executable file
Creating a file
Connection attempt
Sending an HTTP POST request
Running batch commands
Creating a process with a hidden window
Connection attempt to an infection source
Infecting executable files
Threat name:
Win32.Virus.Jadtre
Status:
Malicious
First seen:
2020-11-17 14:55:21 UTC
AV detection:
28 of 29 (96.55%)
Threat level:
  5/5
Unpacked files
SH256 hash:
5d2a136f78cb2d4ccfa3b15c45153373689adb9ae4c23f0b84993dbc0036ef7e
MD5 hash:
2f889e62cdb630528bb5b06ce3eb4bc0
SHA1 hash:
a8198b9db7b1e77fab35d5f49adc493de719f76a
SH256 hash:
38dd37009b0081d3ff705d4960003446ac8d0f10e1bc7df02650427eb52baea1
MD5 hash:
3f76c2a5ade180fe3c1dfa46ffc5e23d
SHA1 hash:
be5f6036ef9d6fe4502b0c613b44cc95681d1128
Detections:
win_unidentified_045_g0 win_unidentified_045_auto
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments