MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b0056bef817408449470d3fa43e13cbc89cabdae795b1dc8cbe9905c5946f530. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: b0056bef817408449470d3fa43e13cbc89cabdae795b1dc8cbe9905c5946f530
SHA3-384 hash: 16686087d45176507a23468037f4700908bc17408e3aa7beabb3fae1269f41a16862871ca5469b3a17d57008f878b027
SHA1 hash: 66ac6cf4bb4247daf1d09d9d4bc4e357cc39c6c8
MD5 hash: 8c7c782df59edd61aabbc510d7747b11
humanhash: mexico-violet-oregon-don
File name:ON.bat
Download: download sample
File size:204 bytes
First seen:2022-10-09 12:52:00 UTC
Last seen:Never
File type:Batch (bat) bat
MIME type:text/plain
ssdeep 6:5bZXVPhgWKlGGPhEFG2ZhZx/PhHyLq2iYPhFn:FZFZuEGZsGKx/ZSuWZF
TLSH T106D0120F323ECC070F304C02E8933765BB05C7C9032B38BD58057547402414BA8E2100
Reporter JAMESWT_WT
Tags:bat

Intelligence


File Origin
# of uploads :
1
# of downloads :
359
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
UNKNOWN
Result
Threat name:
Unknown
Detection:
clean
Classification:
n/a
Score:
1 / 100
Behaviour
Behavior Graph:
n/a
Verdict:
unknown
Result
Malware family:
n/a
Score:
  4/10
Tags:
n/a
Behaviour
Runs net.exe
Suspicious use of WriteProcessMemory
Launches sc.exe
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments