MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ec3b7b37e9767f3a7b678f4e516abe12fc7cfb784ca0cff8ff5a5bafd522b34c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: ec3b7b37e9767f3a7b678f4e516abe12fc7cfb784ca0cff8ff5a5bafd522b34c
SHA3-384 hash: 0f70f6f125461ba87b0d9d5ba9b2698e9fcdff0044dcdaf0f7bbc1f253393005d4c951296089dffb88713aa1329c773e
SHA1 hash: fa4d348b2dda476268ac970856cb013372cdb2a7
MD5 hash: 02085f09b1a4302db94e92cb22d217f8
humanhash: failed-florida-table-happy
File name:Photo.scr
Download: download sample
File size:6'271'188 bytes
First seen:2025-05-05 08:37:44 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 12288:X7YcFBLh3dcQa8sXbO24I+OYECdzCAQ9g47yfeeeij:XkOLhWQaXq24I/YEYhkyfD3
TLSH T1AA562370BD42101BFF9513BAA8C6144A36F1FCF49A52E60A6A59F4F3C3A26F8152640F
TrID 22.2% (.ICL) Windows Icons Library (generic) (2059/9)
22.0% (.EXE) DOS Executable Borland Pascal 7.0x (2035/25)
21.6% (.EXE) Generic Win/DOS Executable (2002/3)
21.6% (.EXE) DOS Executable Generic (2000/1)
10.8% (.SCORE) Music Craft Score (1007/6)
Magika pebin
Reporter abuse_ch
Tags:exe scr

Intelligence


File Origin
# of uploads :
1
# of downloads :
427
Origin country :
NL NL
Vendor Threat Intelligence
Verdict:
Unknown
Threat level:
  2.5/10
Confidence:
100%
Tags:
masquerade
Result
Threat name:
n/a
Detection:
unknown
Classification:
n/a
Score:
0 / 100
Behaviour
Behavior Graph:
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe ec3b7b37e9767f3a7b678f4e516abe12fc7cfb784ca0cff8ff5a5bafd522b34c

(this sample)

  
Delivery method
Distributed via web download

Comments