MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c4dd832248ed4fd93713232de3392690823deaa583f76f63a10dab58ea3790b4. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RedLineStealer


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: c4dd832248ed4fd93713232de3392690823deaa583f76f63a10dab58ea3790b4
SHA3-384 hash: c85b6e19229aeec9906a46079af460072672ab8aae1430fb670bad071e73e842e7e7547ca6a4186c72a7fabd88ff5ab0
SHA1 hash: e9d4412bfaf3fe931d24b270ad9977d01d7d18d9
MD5 hash: 42f7c37f45f5dd7d424f9d45f2899b9e
humanhash: minnesota-fish-mexico-oranges
File name:42f7c37f45f5dd7d424f9d45f2899b9e.exe
Download: download sample
Signature RedLineStealer
File size:2'090 bytes
First seen:2021-10-09 15:13:37 UTC
Last seen:2021-10-09 16:22:58 UTC
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 24:e31GSJOuEtygKoQGyiHif/itkD13gFSM9DMivxobNbkuGwhvxZ5:CousHQGyiHNtc13g8qDNxohkuGwBB
TLSH T19941541BB7F8DDA1D60401718F660E9E73FD817846ECDF03471841613D63845982054A
Reporter abuse_ch
Tags:exe RedLineStealer

Intelligence


File Origin
# of uploads :
2
# of downloads :
291
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
42f7c37f45f5dd7d424f9d45f2899b9e.exe
Verdict:
No threats detected
Analysis date:
2021-10-09 15:21:21 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Clean
Maliciousness:
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
overlay packed
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
c4dd832248ed4fd93713232de3392690823deaa583f76f63a10dab58ea3790b4
MD5 hash:
42f7c37f45f5dd7d424f9d45f2899b9e
SHA1 hash:
e9d4412bfaf3fe931d24b270ad9977d01d7d18d9
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

RedLineStealer

Executable exe c4dd832248ed4fd93713232de3392690823deaa583f76f63a10dab58ea3790b4

(this sample)

  
Delivery method
Distributed via web download

Comments