🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8a773f78391b298dd5d707a5e0b8bb1a7a6c51e5beb2a1e3a4fcb78465dfc13f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



DarkGate


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 8a773f78391b298dd5d707a5e0b8bb1a7a6c51e5beb2a1e3a4fcb78465dfc13f
SHA3-384 hash: 91c01c86df8e5946fb112666a55202c1c861055d6768edf3e9983311503a8ebe2502aa1882b162c7f89be355115a6eb6
SHA1 hash: ef530be783f30f6a9576d9e4cb96ed0c67ac6c2e
MD5 hash: c5d77fec2d0c66bb9b69776942d8cd1f
humanhash: eighteen-happy-vermont-dakota
File name:foeo.zip
Download: download sample
Signature DarkGate
File size:3'490 bytes
First seen:2023-10-11 13:09:55 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 96:V4vzVjbSiScrUeMjsPhiM2NBmtdtoH1fGthAglNH/eL:+v0crUeMjaPKkobkHg
TLSH T175716C74410E7058D1DD763BCA18525A43037FEEA10D2BC8E690DB2D7D8106A287AF0A
TrID 80.0% (.ZIP) ZIP compressed archive (4000/1)
20.0% (.PG/BIN) PrintFox/Pagefox bitmap (640x800) (1000/1)
Reporter proxylife
Tags:DarkGate eugelens.com zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
160
Origin country :
PT PT
File Archive Information

This file archive contains 2 file(s), sorted by their relevance:

File name:HH-41.txt
File size:17 bytes
SHA256 hash: b2e80ac0ef3a8e09c3c0d84023cf284cf91b820eacde14cd559e3fd1911b279a
MD5 hash: e232486657675ebfdb83aab84efbaa35
MIME type:text/plain
Signature DarkGate
File name:HH-41.vbs
File size:9'548 bytes
SHA256 hash: 926a875b17007ab99572ca73c670148eb964f5d9dd9a2abfd496a9c109f4db60
MD5 hash: 97d180b87924abffff58b5a6e2fd7ca4
MIME type:text/plain
Signature DarkGate
Vendor Threat Intelligence
Result
Malware family:
n/a
Score:
  8/10
Tags:
n/a
Behaviour
Checks processor information in registry
Suspicious use of WriteProcessMemory
Enumerates physical storage devices
Checks computer location settings
Executes dropped EXE
Downloads MZ/PE file
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments