MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8f317a783aacdd7c8f3a48e0e360565697d1da15b8a7ab97221b463d9c5b2206. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Adware.Generic


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 8f317a783aacdd7c8f3a48e0e360565697d1da15b8a7ab97221b463d9c5b2206
SHA3-384 hash: d75b8ffa469cb3d75bca4c95b901ac73a625bbf129384e132c7d20a8f918bcaac5dd2f51d572595bd6d8e4a7627ad8e1
SHA1 hash: c8f88446740c12f71a3243bdc7fe119a29076f01
MD5 hash: fbfd9927916b64d204b51e0441b076ce
humanhash: minnesota-north-oxygen-october
File name:8f317a783aacdd7c8f3a48e0e360565697d1da15b8a7ab97221b463d9c5b2206
Download: download sample
Signature Adware.Generic
File size:893'088 bytes
First seen:2020-11-12 14:20:12 UTC
Last seen:2024-07-24 18:56:41 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash 3abe302b6d9a1256e6a915429af4ffd2 (279 x GuLoader, 38 x Formbook, 25 x Loki)
ssdeep 12288:3EAmDysBW2whTmokAHSPI6vKGyvOZvZsa6eGLdap47Zt1R7X9qllrnDRxYq6:3xsBWlh8AHSPIIyvMsa6HLdTTfaBHYq6
Threatray 8 similar samples on MalwareBazaar
TLSH 7A1522E23612DDC6E8175BF01D339AA056964E0C8C99950A70EF3F3B7673353506A8AF
Reporter seifreed
Tags:Adware.Generic

Intelligence


File Origin
# of uploads :
2
# of downloads :
91
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Sending a UDP request
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Threat name:
Win32.Adware.RedCap
Status:
Malicious
First seen:
2020-11-12 14:22:37 UTC
AV detection:
19 of 28 (67.86%)
Threat level:
  1/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
8f317a783aacdd7c8f3a48e0e360565697d1da15b8a7ab97221b463d9c5b2206
MD5 hash:
fbfd9927916b64d204b51e0441b076ce
SHA1 hash:
c8f88446740c12f71a3243bdc7fe119a29076f01
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments