MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a969f17bf162032878417da351a229a3ef428cac99b485aedbded04f62291dee. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



IcedID


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: a969f17bf162032878417da351a229a3ef428cac99b485aedbded04f62291dee
SHA3-384 hash: 690821464d18e88386eb348cce11398446ed9dfdfe09c5b249766e49c3cec3f8130fc04d75a5db7bd2681011902669c8
SHA1 hash: 6394a7cef073156018e5bc665ff6c50784f7bb41
MD5 hash: b82caa36e673c4f5a4cbcc59ef1dac78
humanhash: west-north-minnesota-carpet
File name:2022-08-22-gzip-binary-from-satisfyammyz.com.bin
Download: download sample
Signature IcedID
File size:615'868 bytes
First seen:2022-08-23 23:27:42 UTC
Last seen:Never
File type: gz
MIME type:application/gzip
ssdeep 12288:JUdEI/0ze6WUpj9DmMjp0XeqAqGQGYbT2w1QjPGY8PY:0d0S2Hrj+prT2w1QoPY
TLSH T116D423660CC647826E97DCB9AA77426DF8337358DCB3F415AC6009D97A462F3C2A407E
Reporter malware_traffic
Tags:BokBot gz gzip IcedID


Avatar
malware_traffic
File description: gzip binary from satisfyammyz[.]com used by IcedID installer to create license.dat and persistent IcedID DLL

Intelligence


File Origin
# of uploads :
1
# of downloads :
353
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Result
Verdict:
UNKNOWN
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments