MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5f0de90b56c2a20ae521297bc1e49d4fab727bd8deb62d2ef594930fb3b0d15e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 5f0de90b56c2a20ae521297bc1e49d4fab727bd8deb62d2ef594930fb3b0d15e
SHA3-384 hash: a10b7cd43d35ef3aee638f4e5c47c88494f54f93000567fbea2e7ac63e5044807b709f15c812814026ce845f2997ad98
SHA1 hash: 4fe352315e87ecfabedf6d99cb53fe9f80d425c5
MD5 hash: 43887fc8dbc1d29f066914f18cc2c364
humanhash: mirror-idaho-bakerloo-kilo
File name:a93801f218e281476d1e2b5d2a87a1a5
Download: download sample
File size:157'871 bytes
First seen:2020-11-17 15:48:26 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash d7b2934b89bc50c5c343ad84032de88e (1 x Sytro)
ssdeep 3072:t3gbYiGULALwoOZ6CVLWX5XPK7XCz39yfgUvIDx5ZfeoEDabWMeT:tYYiGULALwFypy7XCz9yIUAw+b5eT
Threatray 19 similar samples on MalwareBazaar
TLSH 04F3120FC796DAD3EBA785B2278B7D502F9D9D3C2E0C039395A5A6362D241E49123C87
Reporter seifreed

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Creating a file in the Windows subdirectories
Creating a file in the Windows directory
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Threat name:
Win32.Worm.Soltern
Status:
Malicious
First seen:
2020-11-17 15:56:05 UTC
AV detection:
44 of 48 (91.67%)
Threat level:
  5/5
Unpacked files
SH256 hash:
5f0de90b56c2a20ae521297bc1e49d4fab727bd8deb62d2ef594930fb3b0d15e
MD5 hash:
43887fc8dbc1d29f066914f18cc2c364
SHA1 hash:
4fe352315e87ecfabedf6d99cb53fe9f80d425c5
SH256 hash:
6c666c8a22b1ef42624414522b3ec24073d5c3eba38c36e182bdfb074c51f340
MD5 hash:
0c1dfbefa9ab634046f8c49b807d0722
SHA1 hash:
b7e6f8ea0d7c0a940106a48fda0cd2db00fff6d5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments