MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a5785d1308cc1e8ff435f3198e07ffa6ab93f42eada0099863eddc256598e8f1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Jadtre


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: a5785d1308cc1e8ff435f3198e07ffa6ab93f42eada0099863eddc256598e8f1
SHA3-384 hash: e87c2303056658c041fac83e85ddc01a6ec04e86ff6e3caad51057c51704bfa6014a9af50c9fde1ba1d51c70d65bf929
SHA1 hash: c8dc9a39124080a6c2d9c1ba2d71822ecf0151de
MD5 hash: 646d734f95c8c6d279b7ed2d5bf4d8de
humanhash: single-xray-low-moon
File name:a2bca68e1e1d31c3bc2e9db9081c930d
Download: download sample
Signature Jadtre
File size:27'136 bytes
First seen:2020-11-17 14:00:03 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash 87bed5a7cba00c7e1f4015f1bdae2183 (3'034 x Jadtre, 23 x IcedID, 17 x Blackmoon)
ssdeep 768:ad5u7mNGtyVflYQGPL4vzZq2o9W7GtxkNKi:ad5z/fhGCq2iW7V
Threatray 549 similar samples on MalwareBazaar
TLSH 59C2C073CE8084FFC0CB3472204522CB9B575A72956A6867A710981E7DBCDE0EA77753
Reporter seifreed

Intelligence


File Origin
# of uploads :
1
# of downloads :
56
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Connection attempt
Sending an HTTP POST request
Modifying an executable file
Creating a file
Running batch commands
Creating a process with a hidden window
Creating a file in the %temp% directory
Creating a process from a recently created file
Sending a UDP request
Creating a window
Changing an executable file
DNS request
Connection attempt to an infection source
Infecting executable files
Threat name:
Win32.Virus.Jadtre
Status:
Malicious
First seen:
2020-11-17 14:01:07 UTC
AV detection:
27 of 29 (93.10%)
Threat level:
  5/5
Unpacked files
SH256 hash:
a5785d1308cc1e8ff435f3198e07ffa6ab93f42eada0099863eddc256598e8f1
MD5 hash:
646d734f95c8c6d279b7ed2d5bf4d8de
SHA1 hash:
c8dc9a39124080a6c2d9c1ba2d71822ecf0151de
SH256 hash:
4afd53b3abbc8bbace4310b7b06c2a715d95b7a05b37801845fdfed6bb8f2883
MD5 hash:
b9831464225d17b3a5084d2eb48b2634
SHA1 hash:
e627ad3981875cfffdfab3cd22f84d6863666b09
Detections:
win_unidentified_045_g0 win_unidentified_045_auto
SH256 hash:
ff3f41f0d3642f977d801de0cc2adb6fbb696ab5eb943613215ade7c577a9f4d
MD5 hash:
136f2f45734577c615e517609fc26155
SHA1 hash:
a7cfd01d753bba7b195c76336bd19defa5d2cd33
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments