MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2bd5348e36ca1bff2da1da38e9e0b2a70399448be740f926ad68d21f0462be03. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 2bd5348e36ca1bff2da1da38e9e0b2a70399448be740f926ad68d21f0462be03
SHA3-384 hash: f08025aa6b42db3334be773416961f54bcb5a3c4c534e546776296d926e9ab6930c241c76b8a655d18d8d3fe01ae4a12
SHA1 hash: e1b5b90fd93d3f1a2dfe6ab4a6791c679a4a3d76
MD5 hash: dbc4edfb7550f835185c705963d8f968
humanhash: helium-king-crazy-stairway
File name:OOWR_4435_183.vbs
Download: download sample
File size:3'990'992 bytes
First seen:2020-03-20 20:00:52 UTC
Last seen:Never
File type:Visual Basic Script (vbs) vbs
MIME type:text/plain
ssdeep 49152:9dDdksdDdOCqbwXmLaB2VWbQPyUsr0UJwrxdaQDtoM73ylCJXx245hidDf8BrSK+:n
TLSH EC06571CDB8C0A8637932781199BE9884D62C7562544AC5E9CBB83C7DE4DA1D3C2D8FF
Reporter Racco42
Tags:dropper vbs

Intelligence


File Origin
# of uploads :
1
# of downloads :
315
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Script-VBS.Trojan.Generic
Status:
Malicious
First seen:
2020-03-21 03:52:59 UTC
AV detection:
10 of 45 (22.22%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Visual Basic Script (vbs) vbs 2bd5348e36ca1bff2da1da38e9e0b2a70399448be740f926ad68d21f0462be03

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments