MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6baa3bd1708ca5b166a52e67239b2b38bdd8bb3117c05564fdddb40b0595de3f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry


Intelligence 1 File information 1 Yara Comments

SHA256 hash: 6baa3bd1708ca5b166a52e67239b2b38bdd8bb3117c05564fdddb40b0595de3f
SHA3-384 hash: c444ae46ec4863412099e533f6dffc43f45a9a70914064b78f8043b4a9589ede857a44a05e306332743f938732ae52d5
SHA1 hash: 3bc7b112d029fd2dc981755c9e986b2424766cb2
MD5 hash: 4fcc5f626b2b9ac376ab69dcfeced282
humanhash: seventeen-carolina-arkansas-video
File name:8799466_9857_3198420.zip
Download: download sample
Signature n/a
File size:297'212 bytes
First seen:2020-06-30 05:55:33 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:Q6o2W6IWuPG6Mq/DyIxu2A7H3TzpmhvgRw9zhgW/0lN/uLzBueN:QV2W6IrP0sDyIxu2EHD5wrgW/02ueN
TLSH 3354233695CB63833913FBB23CCC12836C5DA158A5CFA2C857EDB749B93440E9E5852B
Reporter @jarumlus

Intelligence


Mail intelligence
Trap location Impact
CH Switzerland Low
# of uploads 1
# of downloads 30
Origin country US US
ClamAV SecuriteInfo.com.PUA.VBS-in-ZIP.UNOFFICIAL
CERT.PL MWDB Detection:n/a
Link: https://mwdb.cert.pl/sample/6baa3bd1708ca5b166a52e67239b2b38bdd8bb3117c05564fdddb40b0595de3f/
ReversingLabs :Status:Malicious
Threat name:Script-VBS.Trojan.Kryptik
First seen:2020-06-30 05:57:05 UTC
AV detection:13 of 48 (27.08%)
Threat level:   2/5
VirusTotal:No data

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

zip 6baa3bd1708ca5b166a52e67239b2b38bdd8bb3117c05564fdddb40b0595de3f

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments