MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3920ecf9f7dc8f7fe34721ff41f5955b2ed0943eae2031ff602ae92bc6f3b7c5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



ZLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 3920ecf9f7dc8f7fe34721ff41f5955b2ed0943eae2031ff602ae92bc6f3b7c5
SHA3-384 hash: f088ea443b2f81cd1e9d44c1660eb8f90687e61e2ee60713e34c504e877681e7ed7ea3e8aef9bdae4c7db51163423dee
SHA1 hash: 6c137516acc48185f3a916647a729a03f94b09c3
MD5 hash: 8fe28d9e48e7f52c6a7a80c351fa00ee
humanhash: sweet-ack-berlin-south
File name:SPQAXE994.vbs
Download: download sample
Signature ZLoader
File size:1'308'708 bytes
First seen:2020-04-03 19:47:57 UTC
Last seen:Never
File type:Visual Basic Script (vbs) vbs
MIME type:text/plain
ssdeep 3072:UNuNYjeWHqxFKvZgWP5Adfle1azE0vsGKBvudI04LxgAwVZ42C:UNumzqx0v6TdcazEWseIZ1ef45
TLSH F655F034756B2CC4F8E90772AF0BFFDA576C136F60C0CDA5E86653420322A5E0765A9E
Reporter Racco42
Tags:dropped vbs

Intelligence


File Origin
# of uploads :
1
# of downloads :
107
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Script-VBS.Trojan.Obfus
Status:
Malicious
First seen:
2020-04-03 20:35:31 UTC
File Type:
Text (VBS)
AV detection:
8 of 30 (26.67%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

ZLoader

Visual Basic Script (vbs) vbs 3920ecf9f7dc8f7fe34721ff41f5955b2ed0943eae2031ff602ae92bc6f3b7c5

(this sample)

Comments