MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8edf2978921969e1d32c39297bf62862397a0b97773cfda07ef2e6ad73c7fc9c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry


Intelligence 1 File information 4 Yara Comments

SHA256 hash: 8edf2978921969e1d32c39297bf62862397a0b97773cfda07ef2e6ad73c7fc9c
SHA3-384 hash: 21545611df64a1fdcf6151d5217458f1f48b10f7cdaadc877ce1227073eba118606f9de7687a93606667dad1de3549c9
SHA1 hash: 4064b1da769053829069e392748867baccbc2147
MD5 hash: 9af6942aacb78d200bbd484b5bd76b3c
humanhash: alaska-cola-sixteen-beer
File name:remittance.jar
Download: download sample
Signature Qealler
File size:461'249 bytes
First seen:2020-06-30 07:05:21 UTC
Last seen:2020-07-01 05:15:15 UTC
File type:Java file jar
MIME type:application/java-archive
ssdeep 6144:nq5UZcOpdiAdcl3j+hqYndk9lhqWuTeljEuUH9Xj+WRN/32AT:9d6z+gYnO9utOEuUJh3
TLSH 68A48D2ABEC5D45FF813A13A74134123590682D8F70AEC1F059E5EB94828CDD3B9ADDE
Reporter @JAMESWT_MHT
Tags:qealler

Intelligence


Mail intelligence No data
# of uploads 2
# of downloads 30
Origin country IT IT
CAPE Sandbox Detection:n/a
Link: https://www.capesandbox.com/analysis/16868/
ClamAV SecuriteInfo.com.Java.Trojan.GenericGB.27871.4951.23945.UNOFFICIAL
CERT.PL MWDB Detection:n/a
Link: https://mwdb.cert.pl/sample/8edf2978921969e1d32c39297bf62862397a0b97773cfda07ef2e6ad73c7fc9c/
ReversingLabs :Status:Malicious
Threat name:ByteCode-JAVA.Trojan.Adwind
First seen:2020-06-30 07:07:04 UTC
AV detection:11 of 31 (35.48%)
Threat level:   2/5
Spamhaus Hash Blocklist :Malicious file
Hatching Triage Score:   1/10
Malware Family:n/a
Link: https://tria.ge/reports/200630-15nr8erel2/
Tags:n/a
VirusTotal:Virustotal results 16.95%

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Qealler

Java file jar 8edf2978921969e1d32c39297bf62862397a0b97773cfda07ef2e6ad73c7fc9c

(this sample)

Comments