MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e66b53c3c3bb80eb7b9755aab376626c4f679d511a46ba975becb1ca512ecf8e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



SilentNet


Vendor detections: 5


Intelligence 5 IOCs YARA 2 File information Comments

SHA256 hash: e66b53c3c3bb80eb7b9755aab376626c4f679d511a46ba975becb1ca512ecf8e
SHA3-384 hash: fdea94f729477a6eaea7dd5e2b59e93c15b95dda1346c8f9661c94d8035da9af76e56cf91f90c80a931bd4c5c38bec0f
SHA1 hash: a8b28415e6fe95618db14d3e9c38d50fb66809cc
MD5 hash: 322c0867c53295a4b358bcf01bbd0ed8
humanhash: autumn-table-muppet-west
File name:SmartTweaks.jar
Download: download sample
Signature SilentNet
File size:3'036'281 bytes
First seen:2026-06-13 10:01:33 UTC
Last seen:Never
File type:Java file jar
MIME type:application/zip
ssdeep 49152:wD4kyK7wR8R+zjc7tXdXHxMoS7oupzjJw7DrmDyGqva+fB4gmCmuJdX6aomzXhlH:wDPE8+zKHeonq9w7mGGqzfB4gLmmLRgM
TLSH T15BE533874E28980FD177A43A0EC5E875E9A504F913F77B323CD3AE7D8614BA096C81D9
TrID 77.1% (.JAR) Java Archive (13500/1/2)
22.8% (.ZIP) ZIP compressed archive (4000/1)
Magika jar
Reporter burger
Tags:jar SilentNet

Intelligence


File Origin
# of uploads :
1
# of downloads :
119
Origin country :
DE DE
Vendor Threat Intelligence
No detections
Malware family:
n/a
ID:
1
File name:
SmartTweaks.jar
Verdict:
Malicious activity
Analysis date:
2026-06-13 10:01:01 UTC
Tags:
silentnet stealer python evasion arch-exec arch-doc

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Threat name:
n/a
Detection:
suspicious
Classification:
n/a
Score:
22 / 100
Signature
Joe Sandbox ML detected suspicious sample
Behaviour
Behavior Graph:
behaviorgraph top1 signatures2 2 Behavior Graph ID: 1927576 Sample: SmartTweaks.jar Startdate: 13/06/2026 Architecture: WINDOWS Score: 22 12 Joe Sandbox ML detected suspicious sample 2->12 6 cmd.exe 2 2->6         started        process3 process4 8 java.exe 3 6->8         started        10 conhost.exe 6->10         started       
Gathering data
Result
Malware family:
silentnet
Score:
  10/10
Tags:
family:silentnet stealer
Please note that we are no longer able to provide a coverage score for Virus Total.

YARA Signatures


MalwareBazaar uses YARA rules from several public and non-public repositories, such as YARAhub and Malpedia. Those are being matched against malware samples uploaded to MalwareBazaar as well as against any suspicious process dumps they may create. Please note that only results from TLP:CLEAR rules are being displayed.

Rule name:DetectEncryptedVariants
Author:Zinyth
Description:Detects 'encrypted' in ASCII, Unicode, base64, or hex-encoded
Rule name:RANSOMWARE
Author:ToroGuitar

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments