MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d64ebcc4b8bc44d60849ca3fa89fbfe4ed0963eb199f7267875cc3c991c144a3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: d64ebcc4b8bc44d60849ca3fa89fbfe4ed0963eb199f7267875cc3c991c144a3
SHA3-384 hash: 58b03b4074168d056722351781585bb20861825d65c99b1df0a3fa2cb7c55aeffcc8d4291c0de6b265c5f5972aead69c
SHA1 hash: 6b664ef306eba0ed9d17ba73b0825e01dddcdd23
MD5 hash: 7a7f9db9c28f7b78acfbfa32183a7e8f
humanhash: lamp-table-zulu-iowa
File name:file
Download: download sample
File size:349'525 bytes
First seen:2026-01-28 14:51:12 UTC
Last seen:2026-01-28 15:17:15 UTC
File type:unknown
MIME type:text/plain
ssdeep 6144:RcyWHd6HyA3hS+vohx/Fbg67of2kimmcsBNH+TprFZN/xvwhVSHhPhnRhha8PWrd:RcyWHd6HyA3wyofE2kimm7BNHWP/xvwJ
TLSH T1BB745479F90688C5BCCD0CC865696AF1D33B271743A54A92207A331ECB1BC65CD1A9EF
Magika txt
Reporter Bitsight
Tags:dropped-by-amadey f397a7


Avatar
Bitsight
url: http://185.163.204.142/rs4-evaluator.exe

Intelligence


File Origin
# of uploads :
2
# of downloads :
71
Origin country :
US US
Vendor Threat Intelligence
Result
Gathering data
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

unknown d64ebcc4b8bc44d60849ca3fa89fbfe4ed0963eb199f7267875cc3c991c144a3

(this sample)

  
Dropped by
Amadey
  
Delivery method
Distributed via web download

Comments