MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 721fc592907ebd7164e3152b160f4d33dd3afdae084f596adc48c5d9f3a4fa4c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 721fc592907ebd7164e3152b160f4d33dd3afdae084f596adc48c5d9f3a4fa4c
SHA3-384 hash: d9f55afb22975c75f7f6c6baa753289ef46e20e18e58655ffd1f17e9063a6f24f33f2949e351c90ac8884e7070427409
SHA1 hash: 40fb1f8dd3ddf6e74516889cac621a8a89c55025
MD5 hash: 799f87d6b7a622f13ddcd57b82f8e51d
humanhash: blue-thirteen-saturn-jersey
File name:MIX1h1_20220305-213635
Download: download sample
File size:48'128 bytes
First seen:2022-03-05 21:47:28 UTC
Last seen:2022-03-06 14:38:03 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash b8140c7ce0c1d0103caf5bad49ee20b6
ssdeep 768:LeEB0Xa/s2p8gG+XjBhF1+vDU4ZbgG6GorYPsPeHg+B/+AQhSKeeVbAESJX:LeEB0Xws2dGQn+A4WlrYw5+B/+AQhSKQ
Threatray 1 similar samples on MalwareBazaar
TLSH T188234B26AD5099A3FDA24030A0FA5B57969BEC2887291EE75B51FFD074306D22F3C3C5
Reporter benkow_
Tags:exe hvnc

Intelligence


File Origin
# of uploads :
3
# of downloads :
309
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:

Behaviour
Creating a window
DNS request
Sending a custom TCP request
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
48 / 100
Signature
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Fugrafa
Status:
Malicious
First seen:
2022-02-22 12:19:36 UTC
File Type:
PE (Exe)
Extracted files:
3
AV detection:
21 of 27 (77.78%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
721fc592907ebd7164e3152b160f4d33dd3afdae084f596adc48c5d9f3a4fa4c
MD5 hash:
799f87d6b7a622f13ddcd57b82f8e51d
SHA1 hash:
40fb1f8dd3ddf6e74516889cac621a8a89c55025
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Dropped by
GCleaner

Comments