MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 63d1fdf7706a94f5e4e73b6d895bac9f72a51e39b75e626b4d92781e6d35756f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 63d1fdf7706a94f5e4e73b6d895bac9f72a51e39b75e626b4d92781e6d35756f
SHA3-384 hash: 4dc837d45113f0f5001833ab6b617de3aeeb86655a92f4a6428e1a25d6983bd0dad0ea1ec8af3d72ff7c1f1e85f332cb
SHA1 hash: 431aa0f65f62c272500764ec856098faa27b7393
MD5 hash: 8a43d2d488451cba5c6c4ecbc91ad5ba
humanhash: seventeen-purple-bacon-xray
File name:file
Download: download sample
File size:299'520 bytes
First seen:2026-01-23 16:29:33 UTC
Last seen:2026-01-23 16:30:05 UTC
File type:unknown
MIME type:application/octet-stream
ssdeep 3::
TLSH TNULL
TrID 88.8% (.NULL) null bytes (2048000/1)
11.1% (.HTP) HomeLab/BraiLab Tape image (256000/1)
0.0% (.BIN/MACBIN) MacBinary 1 (1033/5)
0.0% (.SMT) Memo File Apollo Database Engine (88/84)
0.0% (.VXD) VXD Driver (29/21)
Magika iso
Reporter Bitsight
Tags:dropped-by-amadey fbf543


Avatar
Bitsight
url: http://130.12.180.43/files/5279938618/McZEgNt.exe

Intelligence


File Origin
# of uploads :
6
# of downloads :
26
Origin country :
US US
Vendor Threat Intelligence
Result
Gathering data
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

unknown 63d1fdf7706a94f5e4e73b6d895bac9f72a51e39b75e626b4d92781e6d35756f

(this sample)

  
Dropped by
Amadey
  
Delivery method
Distributed via web download

Comments