MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e7ccc8368fff4db13ebdd7ab3bf4b486145e91b1ad48bb75fceb407f1a2ed3f8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 10


Intelligence 10 IOCs YARA File information Comments

SHA256 hash: e7ccc8368fff4db13ebdd7ab3bf4b486145e91b1ad48bb75fceb407f1a2ed3f8
SHA3-384 hash: 4afc13ecbf45e907808a375a998a96a48f23aeecee34d908b452f993fad19f575d3d1ccb6f6ec27e9f8218524efe282c
SHA1 hash: 3b007fb0a1a25835f7d7279a7f75450e6e76854e
MD5 hash: 7b5c88aa1665c7555cf227e01683b4f4
humanhash: happy-alanine-failed-earth
File name:Game.exe
Download: download sample
File size:83'249'214 bytes
First seen:2025-12-09 13:52:19 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash 56c2f8c966897cdb64954ebc4c75c126
ssdeep 393216:Ytbu6uPZI7nqYAERCJbE81AKlkUiB0uu+sIyNOnS0B4AycWMCYDMbLbTOwEJ7eVS:YYNrgsJYUKY6ShrsxwbveoLU
TLSH T133087B4263EA04C4F9F7DA759AE65617C673BC122F3095CF220C17291F736E09A76B22
TrID 63.5% (.EXE) Win64 Executable (generic) (10522/11/4)
12.2% (.EXE) OS/2 Executable (generic) (2029/13)
12.0% (.EXE) Generic Win/DOS Executable (2002/3)
12.0% (.EXE) DOS Executable Generic (2000/1)
Magika pebin
dhash icon cc86f8793323070c
Reporter lfr
Tags:exe


Avatar
lfr
https://www.patreon.com/file?h=145432607&m=577900702

Intelligence


File Origin
# of uploads :
1
# of downloads :
107
Origin country :
FR FR
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
Game.exe
Verdict:
Suspicious activity
Analysis date:
2025-12-09 13:49:20 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Verdict:
Malicious
Score:
81.4%
Tags:
malware
Result
Verdict:
Clean
Maliciousness:

Behaviour
Sending a custom TCP request
Verdict:
Clean
File Type:
exe x64
First seen:
2025-12-09T11:32:00Z UTC
Last seen:
2025-12-09T16:59:00Z UTC
Hits:
~10
Gathering data
Threat name:
Win64.Trojan.Generic
Status:
Suspicious
First seen:
2025-12-09 13:49:21 UTC
File Type:
PE+ (Exe)
Extracted files:
8
AV detection:
9 of 24 (37.50%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  7/10
Tags:
n/a
Behaviour
Checks processor information in registry
Suspicious behavior: EnumeratesProcesses
Loads dropped DLL
Verdict:
Suspicious
Tags:
n/a
YARA:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe e7ccc8368fff4db13ebdd7ab3bf4b486145e91b1ad48bb75fceb407f1a2ed3f8

(this sample)

  
Delivery method
Distributed via web download

Comments