MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8b11f853afd0119988fd2fa04e379c6d77eb9806314b198d5c92cd1258fd02f7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 8b11f853afd0119988fd2fa04e379c6d77eb9806314b198d5c92cd1258fd02f7
SHA3-384 hash: d7ec96248132c68f7b62d839f2770eb1ae3c45119570e22b82c41df363f213b6dac3bdb42c280ef9bfe3790f7927250f
SHA1 hash: 8f6a48923071171f9dcabdc0e6faef31f0e1ea1d
MD5 hash: 09002944f0f0eec37b022507919c3538
humanhash: single-king-vermont-failed
File name:8b11f853afd0119988fd2fa04e379c6d77eb9806314b198d5c92cd1258fd02f7
Download: download sample
File size:2'442'752 bytes
First seen:2021-02-18 10:31:36 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash ae0a5112fe1176f4e5f6e1bc95e4c209 (1 x Bdaejec)
ssdeep 49152:7TcEazG0yIzQMY6Weiih5cDzei2B3USlBFr/CIVZSb68htAUZ3Ax:UnFyIUkbvGeZHVZSW8htg
TLSH 8DB51214A1EA8D46CB15A97953839B3F78165FCF564C9CB02670778E3C3B89258CF22E
Reporter matalaz
Tags:flystudio


Avatar
matalaz
This is the malware sample being dissected in the mentioned Youtube video.

Intelligence


File Origin
# of uploads :
1
# of downloads :
143
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:

Behaviour
Creating a window
Sending a custom TCP request
Sending a UDP request
Result
Verdict:
UNKNOWN
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
56 / 100
Signature
Machine Learning detection for sample
Multi AV Scanner detection for submitted file
PE file has a writeable .text section
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Symmi
Status:
Malicious
First seen:
2015-02-10 13:00:00 UTC
AV detection:
17 of 25 (68.00%)
Threat level:
  5/5
Verdict:
unknown
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
dd7150defb34d0f37f4e5cb35c46a23b61b0fb08302b554941fa3af092b01674
MD5 hash:
f74ab5aecbfc760f9bb1d91b76ca887b
SHA1 hash:
1130e4cbcae6232987fbc6188d43e5b3d82fff53
SH256 hash:
8b11f853afd0119988fd2fa04e379c6d77eb9806314b198d5c92cd1258fd02f7
MD5 hash:
09002944f0f0eec37b022507919c3538
SHA1 hash:
8f6a48923071171f9dcabdc0e6faef31f0e1ea1d
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments