MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cfaecfea53a947e1d3f1e56aa7f62b2507e1b785df789ddb5619f025f8dd954a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



CobaltStrike


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: cfaecfea53a947e1d3f1e56aa7f62b2507e1b785df789ddb5619f025f8dd954a
SHA3-384 hash: 760e7138a9e40cb7725d17b57e75a9bb56a831e74ed2bc257fa1b6d9cb290b1f8d1ba8dc96cd8e4c8a52eae58b550187
SHA1 hash: c6e5e32cf96702be5cbc338afc1edfa400640f50
MD5 hash: 9f46751cc0b2a616e2731c9c74ce980f
humanhash: blue-west-double-hydrogen
File name:480c5f297ec7d30d21449ab950f6dd3cdfeb78c591b5e3450c2d6027f8be2e72.7z
Download: download sample
Signature CobaltStrike
File size:107'498 bytes
First seen:2023-10-18 07:58:25 UTC
Last seen:Never
File type: 7z
MIME type:application/x-7z-compressed
Note:This file is a password protected archive. The password is: infected
ssdeep 3072:7cWW/i1av5vTZt0Ix/nBuXGAkdsBMs/Q2mfhI:77Ii1eDxx/n33MTQ2H
TLSH T16DB312368D68BFCC85BF596D51F1C972140A5B5C42DF001D29F36EA01FAF41A89E62C9
TrID 57.1% (.7Z) 7-Zip compressed archive (v0.4) (8000/1)
42.8% (.7Z) 7-Zip compressed archive (gen) (6000/1)
Reporter Anonymous
Tags:7z CobaltStrike

Intelligence


File Origin
# of uploads :
1
# of downloads :
199
Origin country :
JP JP
File Archive Information

This file archive contains 1 file(s), sorted by their relevance:

File name:480c5f297ec7d30d21449ab950f6dd3cdfeb78c591b5e3450c2d6027f8be2e72
File size:319'488 bytes
SHA256 hash: 480c5f297ec7d30d21449ab950f6dd3cdfeb78c591b5e3450c2d6027f8be2e72
MD5 hash: 10ceea0a30f6b5126c0192bde43175ac
MIME type:application/x-dosexec
Signature CobaltStrike
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
cobaltstrike control lolbin meterpreter overlay packed remote
Result
Verdict:
MALICIOUS
Threat name:
Binary.Trojan.Generic
Status:
Suspicious
First seen:
2023-10-18 07:59:05 UTC
File Type:
Binary (Archive)
Extracted files:
1
AV detection:
3 of 21 (14.29%)
Threat level:
  5/5
Result
Malware family:
cobaltstrike
Score:
  10/10
Tags:
family:cobaltstrike botnet:0
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments