MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e7859a4c9218bd982052108c8606bde71b44d4ca543ee402eda34427f99c388c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Dridex


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: e7859a4c9218bd982052108c8606bde71b44d4ca543ee402eda34427f99c388c
SHA3-384 hash: bf8968ff86f610d91f9cdf3c1ed0ffd6e8f0735e74a0c0c02ac7303c07b6db294d1cf8415ad14d67256117527e85e9d3
SHA1 hash: 6535bff96794e2b598184dab1cd4bc615dcbe339
MD5 hash: effbfd6fd149efdd68bf96d2c72171da
humanhash: bulldog-don-sodium-yankee
File name:effbfd6fd149efdd68bf96d2c72171da.dll
Download: download sample
Signature Dridex
File size:81'493 bytes
First seen:2020-10-21 10:47:27 UTC
Last seen:Never
File type:DLL dll
MIME type:application/x-dosexec
ssdeep 1536:6rJ/QYFwyrerBl36rozoEwVjoSYGoN8aDNTfswAPk0XczSAMtopQVAwy:MJ/VurR0ijkM0XcOtsQVAl
TLSH BD83F135A1A35D78E57935B889072F1BDB3AE716C7608E176FC06E4A33E02C95212F36
Reporter abuse_ch
Tags:dll Dridex

Intelligence


File Origin
# of uploads :
1
# of downloads :
124
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Clean
Maliciousness:

Behaviour
Sending a UDP request
Result
Threat name:
Unknown
Detection:
malicious
Classification:
n/a
Score:
52 / 100
Signature
Machine Learning detection for sample
Multi AV Scanner detection for submitted file
Behaviour
Behavior Graph:
Verdict:
unknown
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Suspicious use of WriteProcessMemory
Unpacked files
SH256 hash:
e7859a4c9218bd982052108c8606bde71b44d4ca543ee402eda34427f99c388c
MD5 hash:
effbfd6fd149efdd68bf96d2c72171da
SHA1 hash:
6535bff96794e2b598184dab1cd4bc615dcbe339
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Dridex

DLL dll e7859a4c9218bd982052108c8606bde71b44d4ca543ee402eda34427f99c388c

(this sample)

  
Delivery method
Distributed via web download

Comments