MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a9bf754e99d30b8c5ec4fff46c212976d88154f77fbdec46e65c303c48161bfe. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Jadtre


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: a9bf754e99d30b8c5ec4fff46c212976d88154f77fbdec46e65c303c48161bfe
SHA3-384 hash: 18a3ddbb7b6d9955ea4037c7352da651b1cea17ca3c7fd4cedda773bc5e44406e360d3f128afe5a30a1561f865d97a5c
SHA1 hash: 4aefc0eb7aa4f19891e0caf9d85ec36cce85295d
MD5 hash: 02df2c53e2957681c206951a4372a470
humanhash: timing-march-montana-august
File name:aa3fb968fa824b8d7120ba0a9be031fe
Download: download sample
Signature Jadtre
File size:27'136 bytes
First seen:2020-11-17 14:09:42 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash 87bed5a7cba00c7e1f4015f1bdae2183 (3'034 x Jadtre, 23 x IcedID, 17 x Blackmoon)
ssdeep 768:5d5u7mNGtyVflZYQGPL4vzZq2oZ7Gtx3EiA:5d5z/flRGCq2w7Z
Threatray 1'362 similar samples on MalwareBazaar
TLSH FDC2C072CE4081FFC0CB3432204522CB9B575A7265AA74A7A750981E7DBCDE0DD7A753
Reporter seifreed

Intelligence


File Origin
# of uploads :
1
# of downloads :
52
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Creating a file in the %temp% directory
Creating a process from a recently created file
Creating a window
DNS request
Changing an executable file
Connection attempt
Sending an HTTP POST request
Modifying an executable file
Creating a file
Running batch commands
Creating a process with a hidden window
Connection attempt to an infection source
Infecting executable files
Threat name:
Win32.Virus.Jadtre
Status:
Malicious
First seen:
2020-11-17 14:11:29 UTC
AV detection:
27 of 29 (93.10%)
Threat level:
  5/5
Unpacked files
SH256 hash:
a9bf754e99d30b8c5ec4fff46c212976d88154f77fbdec46e65c303c48161bfe
MD5 hash:
02df2c53e2957681c206951a4372a470
SHA1 hash:
4aefc0eb7aa4f19891e0caf9d85ec36cce85295d
SH256 hash:
ac38408ed953ae3ac84ffea246b6dc341b7977f609644022b6b3f3ed4dda77a2
MD5 hash:
b0c0a82dc272d4a9acec936a557bdd8c
SHA1 hash:
9fea9374819365158f8aea513ef5c2d246486090
Detections:
win_unidentified_045_g0 win_unidentified_045_auto
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments