MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cc7852dc77152c57aa51e7b7dc34e09e086bba8845334d28d652b07adbc651bb. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Avaddon


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: cc7852dc77152c57aa51e7b7dc34e09e086bba8845334d28d652b07adbc651bb
SHA3-384 hash: 7207c80b1f102e35f081cba435d0db47e594f4fe9f48f799c9a778ec2cde9e3525456accc77ede66bb25c44822310183
SHA1 hash: 798b84d0ed6d149c4defc575216e82fdb00d7864
MD5 hash: de224a9b8280cac9fb93da85dae08b85
humanhash: cat-eleven-fanta-river
File name:de224a9b8280cac9fb93da85dae08b85.exe
Download: download sample
Signature Avaddon
File size:4'633'327 bytes
First seen:2020-09-25 13:15:25 UTC
Last seen:2020-09-25 13:48:20 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash b1ea5fd53e7480d5e00ebc689ced94b3 (6 x Avaddon)
ssdeep 98304:bw3OKBzMFxybbbbpNGWeEi4DtrRKm40djW1mGaHV:bw3y6bbbbpNYwDdjW1zqV
TLSH 382649E67647A1CFE05E1678D412CE42982C13F597218943FA6CB8FE7F72CE21687825
Reporter abuse_ch
Tags:Avaddon exe

Intelligence


File Origin
# of uploads :
2
# of downloads :
244
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:
Result
Threat name:
Unknown
Detection:
suspicious
Classification:
n/a
Score:
22 / 100
Signature
a
c
d
e
f
g
h
i
L
M
n
o
p
r
s
t
Behaviour
Behavior Graph:
Threat name:
Win32.Packed.Themida
Status:
Malicious
First seen:
2020-09-25 13:17:09 UTC
AV detection:
21 of 48 (43.75%)
Threat level:
  1/5
Result
Malware family:
n/a
Score:
  10/10
Tags:
n/a
Unpacked files
SH256 hash:
cc7852dc77152c57aa51e7b7dc34e09e086bba8845334d28d652b07adbc651bb
MD5 hash:
de224a9b8280cac9fb93da85dae08b85
SHA1 hash:
798b84d0ed6d149c4defc575216e82fdb00d7864
Detections:
win_avaddon_w0
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Avaddon

Executable exe cc7852dc77152c57aa51e7b7dc34e09e086bba8845334d28d652b07adbc651bb

(this sample)

  
Delivery method
Distributed via web download

Comments