MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d6832ecc0d04a0621fbe1ed19311577f6a750bfb68460809bc9dfa571c222206. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: d6832ecc0d04a0621fbe1ed19311577f6a750bfb68460809bc9dfa571c222206
SHA3-384 hash: ce4e0d24f0a0bfbe1c994382117ad4bb25f3ab294e05ad7f34b53a0358dcdd65740e61890969389f9041f2afdc5600e7
SHA1 hash: d6f6374b9a548949867fbbc4a956116d1065ade4
MD5 hash: 8499eadc32955b81075383cb2c9bf247
humanhash: london-shade-saturn-music
File name:d6832ecc0d04a0621fbe1ed19311577f6a750bfb68460809bc9dfa571c222206.jar
Download: download sample
File size:23'066'609 bytes
First seen:2026-03-17 13:56:48 UTC
Last seen:Never
File type:Java file jar
MIME type:application/java-archive
ssdeep 393216:nuwn6pOT72BonVCU04tZAdZhnSmAXYp9LGc9jSPhxLW3VMWldgR8mBQ2fM:zeo7wnx4nAPdTkYplGkS3W3VMW09Nk
TLSH T18A3701177DD6DA2AD94BA53618A1C963B82911FDD80FD06BC2E44C8A4C73C850B53FEE
TrID 48.2% (.JAR) Java Archive (13500/1/2)
37.5% (.SH3D) Sweet Home 3D Design (generic) (10500/1/3)
14.2% (.ZIP) ZIP compressed archive (4000/1)
Magika jar
Reporter JAMESWT_WT
Tags:jar SugarSMP

Intelligence


File Origin
# of uploads :
1
# of downloads :
122
Origin country :
IT IT
Vendor Threat Intelligence
No detections
Malware family:
n/a
ID:
1
File name:
d6832ecc0d04a0621fbe1ed19311577f6a750bfb68460809bc9dfa571c222206.jar
Verdict:
Malicious activity
Analysis date:
2026-03-17 14:03:19 UTC
Tags:
discord anti-evasion stealer aegis evasion

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Verdict:
Malicious
Score:
70%
Tags:
shellcode
Gathering data
Gathering data
Result
Malware family:
n/a
Score:
  6/10
Tags:
defense_evasion
Behaviour
Suspicious use of WriteProcessMemory
Views/modifies file attributes
Contacts third-party web service commonly abused for C2
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments