MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 842a5d37325eb210f324281abe6f29afc24d16f084fe0fea78cf1c9fd92b6dcc. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



NanoCore


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 842a5d37325eb210f324281abe6f29afc24d16f084fe0fea78cf1c9fd92b6dcc
SHA3-384 hash: 10151ef9cb5febf6b0c202e9042aa5503d51ba4d2e1c9fb4ea93e56da9d632655ed57b1beb52b16984d4dcc0f9d0f004
SHA1 hash: 151528cc7dee40e3b8e63fcbd001ffd790fdc286
MD5 hash: e1200dd67c532805f47f12599e555753
humanhash: artist-potato-winner-island
File name:AWB-document.zip
Download: download sample
Signature NanoCore
File size:494'876 bytes
First seen:2020-06-04 06:18:04 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:Hu//o1mOdhBgCXqHUmDcht/cfCRu+ETvuWfs9qoIg1rRLKqZ:HqGdgCXAFgavuSs1ImJKa
TLSH 9AB4235533CFD24C09985EB9F1E7AE10F7D63AA57FEE4D6300865806CAF3081AAE2D45
Reporter jarumlus
Tags:NanoCore

Intelligence


File Origin
# of uploads :
1
# of downloads :
56
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-06-03 15:41:39 UTC
AV detection:
26 of 48 (54.17%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

NanoCore

zip 842a5d37325eb210f324281abe6f29afc24d16f084fe0fea78cf1c9fd92b6dcc

(this sample)

  
Dropped by
NanoCore
  
Delivery method
Distributed via e-mail attachment

Comments