MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b65a639e435aa80ece4326d85052f980a9992788d4b9b7fb94141d7e82ddc960. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Dridex


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: b65a639e435aa80ece4326d85052f980a9992788d4b9b7fb94141d7e82ddc960
SHA3-384 hash: e282a0dc20574d8e9e4ef68532999483d81f65194e80c2cdbd87c5ad68d3d2676648b455cb7db8f91dd6c8a0f224065e
SHA1 hash: fa88846e6b16ae607e19356761d42beb2c37be9f
MD5 hash: 86e52277cce4aa49694729055c481e5a
humanhash: pennsylvania-arizona-sad-beryllium
File name:mkcxskjd.exe
Download: download sample
Signature Dridex
File size:200'704 bytes
First seen:2020-06-23 13:43:39 UTC
Last seen:2020-06-23 15:21:21 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash 5f5d7f3d576b5fd54d7374e64458a706 (3 x Dridex)
ssdeep 6144:wQYmU2JFD8euKJ7lfJy7rcYrDZM8DY8gGTlj:wMU2z8NKJRCrDZM8D5
Threatray 262 similar samples on MalwareBazaar
TLSH 19140119778481B7F79694307D67F5B90A952C734814C66F1F82391CEEBEA2688F032B
Reporter JAMESWT_WT
Tags:Dridex

Intelligence


File Origin
# of uploads :
2
# of downloads :
94
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Dridex
Status:
Malicious
First seen:
2020-06-23 13:45:05 UTC
File Type:
PE (Exe)
Extracted files:
2
AV detection:
24 of 29 (82.76%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments