MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c48f8000500660cef601ff6b12c33620d03e6f236aff833f9cda6d524e009f58. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: c48f8000500660cef601ff6b12c33620d03e6f236aff833f9cda6d524e009f58
SHA3-384 hash: 57db9fa893397d7d3fe1d117fba4e30dbbb5d54f4d5615140c922aa015a97e643846ac91c11f1f4e6664eb24b86faace
SHA1 hash: ceccb684e76dea5093f4470b70d69317a3f4f6c6
MD5 hash: 0f61391a55eb1c766013595b862068b5
humanhash: diet-one-minnesota-virginia
File name:0f61391a55eb1c766013595b862068b5.exe
Download: download sample
File size:1'066'823 bytes
First seen:2020-11-02 15:37:09 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 24576:Is50MnT9pPNP28/AH0cKYdzWwI6Cs50MKT9pP+DDtH9/Iv:Is5rlVYDWs5wAnwv
TLSH 3D352313FB249653D10947B104F297EB7371BC2A97020A0B36DDB77F2FBA6866D94209
Reporter abuse_ch
Tags:exe

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:
Result
Verdict:
UNKNOWN
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
suspicious
Classification:
n/a
Score:
21 / 100
Signature
a
c
d
e
f
g
h
i
L
M
n
o
p
r
s
t
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-11-02 15:39:05 UTC
AV detection:
14 of 29 (48.28%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
c48f8000500660cef601ff6b12c33620d03e6f236aff833f9cda6d524e009f58
MD5 hash:
0f61391a55eb1c766013595b862068b5
SHA1 hash:
ceccb684e76dea5093f4470b70d69317a3f4f6c6
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe c48f8000500660cef601ff6b12c33620d03e6f236aff833f9cda6d524e009f58

(this sample)

  
Delivery method
Distributed via web download

Comments