🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 df544bca0809572ff2f98f9c004b31f3fc7dbe9d9ee9aef34308c26d73c9742d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: df544bca0809572ff2f98f9c004b31f3fc7dbe9d9ee9aef34308c26d73c9742d
SHA3-384 hash: 8796a5cdf670e964f4462d29c239cad112a5d847ea6792470e4f4a9bbb559375124480f9699df0116464dd7505386675
SHA1 hash: 5502aec5504c1479640cd1d44c827b316589683d
MD5 hash: 66ae3ac92c080265160dd55ad87cd972
humanhash: kitten-monkey-mexico-april
File name:City_car_driving_Home_Edition_keygen_by_KeygenSumo.exe
Download: download sample
File size:6'011'500 bytes
First seen:2021-08-11 04:26:18 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash fcf1390e9ce472c7270447fc5c61a0c1 (919 x DCRat, 118 x NanoCore, 94 x njrat)
ssdeep 98304:mD5Q8xVBQkx9bByq0msESERrYO0r8B5U8iLI6gHQpZGmmByvMxoMxhzwdqk:65Q+5BtSERar25U8iyH+G3ByvVchzwdX
Threatray 868 similar samples on MalwareBazaar
TLSH T1405633423559CCF2CA325132B52C9BB23835BE217A25D7AEABE4A56DED345014239F33
dhash icon 9494b494d4aeaeac (918 x DCRat, 486 x NirCmd, 172 x RedLineStealer)
Reporter 0091_sec
Tags:AZORult Evasion exe Pony Raccoon RAT


Avatar
0091_sec
A friend accidentally came across a website where he downloaded a file and his computer started working strangely.
As I have knowledge in this, I requested to him the details and the original file to analyze it. And I found a quite strong Trojan, so I decided to report it immediately

Intelligence


File Origin
# of uploads :
1
# of downloads :
1'842
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
City_car_driving_Home_Edition_keygen_by_KeygenSumo.exe
Verdict:
Suspicious activity
Analysis date:
2021-08-11 04:29:10 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Clean
Maliciousness:

Behaviour
DNS request
Creating a window
Searching for the window
Sending a UDP request
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Suspicious behavior: GetForegroundWindowSpam
Unpacked files
SH256 hash:
df544bca0809572ff2f98f9c004b31f3fc7dbe9d9ee9aef34308c26d73c9742d
MD5 hash:
66ae3ac92c080265160dd55ad87cd972
SHA1 hash:
5502aec5504c1479640cd1d44c827b316589683d
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe df544bca0809572ff2f98f9c004b31f3fc7dbe9d9ee9aef34308c26d73c9742d

(this sample)

  
Delivery method
Distributed via web download

Comments