MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6c67f4940622e0556a4c63a7ae217af25ccad540bf1a4607cf68e708a6bcff8e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 6c67f4940622e0556a4c63a7ae217af25ccad540bf1a4607cf68e708a6bcff8e
SHA3-384 hash: 801cddd1006eef3e54cf44cd3602d376dd5034db3c9e6c6c1108928e0730775e54a9b0ea6535720966617926a57fbf70
SHA1 hash: 7108e5b3acffd4db5dcb73c219d51fc60bf39937
MD5 hash: 8296bc5164d69575e78a8d858297b6f5
humanhash: wyoming-uncle-uniform-cat
File name:8296bc5164d69575e78a8d858297b6f5.exe
Download: download sample
File size:1'009'995 bytes
First seen:2021-10-08 18:04:27 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash be41bf7b8cc010b614bd36bbca606973 (195 x LummaStealer, 126 x DanaBot, 63 x Vidar)
ssdeep 24576:HizM1ZtNZNFk66A13kOl7LLj1g6Dt8yXPYcHje:CY1Z7F35fLjHDezcHje
TLSH T11F2523103E81C4B3E9E69E70DE76561298B7FE221D24C62E2340B69F3873D41D826F76
File icon (PE):PE icon
dhash icon 0cfae274e0f0f430 (5 x DanaBot)
Reporter abuse_ch
Tags:exe

Intelligence


File Origin
# of uploads :
1
# of downloads :
349
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
8296bc5164d69575e78a8d858297b6f5.exe
Verdict:
No threats detected
Analysis date:
2021-10-08 18:07:47 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Clean
Maliciousness:

Behaviour
Creating a window
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
overlay packed
Result
Threat name:
Unknown
Detection:
suspicious
Classification:
n/a
Score:
24 / 100
Signature
Machine Learning detection for sample
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Phonzy
Status:
Malicious
First seen:
2021-10-08 18:05:09 UTC
AV detection:
13 of 45 (28.89%)
Threat level:
  5/5
Verdict:
unknown
Result
Malware family:
n/a
Score:
  3/10
Tags:
n/a
Behaviour
Enumerates physical storage devices
Unpacked files
SH256 hash:
6c67f4940622e0556a4c63a7ae217af25ccad540bf1a4607cf68e708a6bcff8e
MD5 hash:
8296bc5164d69575e78a8d858297b6f5
SHA1 hash:
7108e5b3acffd4db5dcb73c219d51fc60bf39937
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments