MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7d9d2f6b006ed18d3352f08203d3a69e135a6febe702791d5245e8898022ff6c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AveMariaRAT


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 7d9d2f6b006ed18d3352f08203d3a69e135a6febe702791d5245e8898022ff6c
SHA3-384 hash: e522124ec6b3fa00ec39a7d3cb11102c14a2e479c786106e353520ddcb39723e01856c4a3b80c49f2503dd7f8fe2ff15
SHA1 hash: 61b804f47e48f5179a1259e4baf3e73f866bdcd3
MD5 hash: 9fad8581537743c2a6fcc37ec8c47362
humanhash: music-xray-four-five
File name:Doc_43795379326436.rar
Download: download sample
Signature AveMariaRAT
File size:109'570 bytes
First seen:2020-06-28 23:57:32 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 3072:3G3CBiZJOYdKY0vPZqVBvfwRNREceopaXwq5jw:3oO2EfPZq3vfVceyhn
TLSH DBB312F62E083A2EB0CC1CA26C17E747C16E5DA95506BEE64D328645571AC3C73C8A6F
Reporter jarumlus
Tags:AveMariaRAT

Intelligence


File Origin
# of uploads :
1
# of downloads :
71
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Wacatac
Status:
Malicious
First seen:
2020-06-28 23:59:03 UTC
AV detection:
18 of 29 (62.07%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AveMariaRAT

rar 7d9d2f6b006ed18d3352f08203d3a69e135a6febe702791d5245e8898022ff6c

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments