MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 f68fef21fcba74efb4775940e215cbce8f20754fece7a277d0c5e525d2ba7744. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Jadtre
Vendor detections: 6
| SHA256 hash: | f68fef21fcba74efb4775940e215cbce8f20754fece7a277d0c5e525d2ba7744 |
|---|---|
| SHA3-384 hash: | 99b23b03acbab9fa944f431ac0eaa5b0c613bfaa707570af54bb3ce94b1cee169dc34295f76870af3752755f9256642d |
| SHA1 hash: | a1264534d362d5bf2dd4dcdabff9ab25b8011085 |
| MD5 hash: | 0bc75594c057cca1a2def700b158ca66 |
| humanhash: | jig-cola-football-missouri |
| File name: | b04955e7d246f085384eac4e2c34cc9d |
| Download: | download sample |
| Signature | Jadtre |
| File size: | 27'136 bytes |
| First seen: | 2020-11-17 15:00:16 UTC |
| Last seen: | Never |
| File type: | |
| MIME type: | application/x-dosexec |
| imphash | 87bed5a7cba00c7e1f4015f1bdae2183 (3'034 x Jadtre, 23 x IcedID, 17 x Blackmoon) |
| ssdeep | 768:od5u7mNGtyVfSvQGPL4vzZq2oZ7GsxxGr:od5z/fvGCq2w7j |
| Threatray | 1'199 similar samples on MalwareBazaar |
| TLSH | A1C2D073CE8084FFC0CB3472204521CBDB536A72956A6867A750981E7DBCDE0D97A753 |
| Reporter |
Intelligence
File Origin
# of uploads :
1
# of downloads :
61
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:
Behaviour
Creating a file in the %temp% directory
Sending a UDP request
Creating a process from a recently created file
Creating a window
Changing an executable file
DNS request
Connection attempt
Sending an HTTP POST request
Modifying an executable file
Creating a file
Running batch commands
Creating a process with a hidden window
Connection attempt to an infection source
Infecting executable files
Threat name:
Win32.Virus.Jadtre
Status:
Malicious
First seen:
2020-11-17 15:14:17 UTC
AV detection:
27 of 29 (93.10%)
Threat level:
5/5
Verdict:
malicious
Similar samples:
+ 1'189 additional samples on MalwareBazaar
Unpacked files
SH256 hash:
f68fef21fcba74efb4775940e215cbce8f20754fece7a277d0c5e525d2ba7744
MD5 hash:
0bc75594c057cca1a2def700b158ca66
SHA1 hash:
a1264534d362d5bf2dd4dcdabff9ab25b8011085
SH256 hash:
3e670be8631b92d907da72f3abc9e6d69e8d7d3bf667cbfb7d520532c44bdab4
MD5 hash:
7a8db7ac79fda5b633bfb4e96141fa17
SHA1 hash:
58ec99a5798c3f3bf94597ced917a40a8841405e
Detections:
win_unidentified_045_g0
win_unidentified_045_auto
SH256 hash:
a11a46811845a5380c7569793247905f1a7d3b44918061b1fe5bf1bf5c1c8da3
MD5 hash:
521ac0fe19421b29ef3bff517fb95c45
SHA1 hash:
5cbe10a576616887b42bf7082a853c7dcbf1bce8
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Malicious File
Score:
1.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Delivery method
Other
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.