MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bbaf7b9519156698bba5d8454796f33089591000fe75e82c8c4e52b427640d6d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: bbaf7b9519156698bba5d8454796f33089591000fe75e82c8c4e52b427640d6d
SHA3-384 hash: db2e40ae167502d59764475e6d3e518334feae52084b736719702e3a6fa2e4a9057c11203c1bfe8279b835016a6f64c5
SHA1 hash: 1c6ad4f4a8a561b2ca891b694e1fef3f389dc7cf
MD5 hash: 6f1056fb9fbe40d06ff1d8ec35222dfa
humanhash: arizona-monkey-mobile-april
File name:Photo.scr
Download: download sample
File size:6'271'176 bytes
First seen:2025-09-10 06:52:24 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 12288:nQtm8huL0V0CP7O4B/DKSuCnWlq0t/DhnZAajYgjHij37p7:nQtmUuwzJ/2SFkxt/VZ5YGCjF7
TLSH T178562338BED57A16E52163B324DE01C9ED9CF8FD8A31C670B4C7145AE08EED81D9CA85
TrID 22.2% (.ICL) Windows Icons Library (generic) (2059/9)
22.0% (.EXE) DOS Executable Borland Pascal 7.0x (2035/25)
21.6% (.EXE) Generic Win/DOS Executable (2002/3)
21.6% (.EXE) DOS Executable Generic (2000/1)
10.8% (.SCORE) Music Craft Score (1007/6)
Magika unknown
Reporter abuse_ch
Tags:exe scr

Intelligence


File Origin
# of uploads :
1
# of downloads :
63
Origin country :
SE SE
Vendor Threat Intelligence
Verdict:
Unknown
Threat level:
  2.5/10
Confidence:
100%
Tags:
masquerade
Result
Threat name:
n/a
Detection:
unknown
Classification:
n/a
Score:
0 / 100
Behaviour
Behavior Graph:
Gathering data
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe bbaf7b9519156698bba5d8454796f33089591000fe75e82c8c4e52b427640d6d

(this sample)

  
Delivery method
Distributed via web download

Comments