MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8eb98ee38347084673c5e45fef42a28fd5b48249e520b9feb2e99b809424b75d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



HawkEye


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 8eb98ee38347084673c5e45fef42a28fd5b48249e520b9feb2e99b809424b75d
SHA3-384 hash: e11fd68d0301f8797371e9569f26fafb39c2610ac7b9cc3d967292eacc8cb0cbe54106ccf290adc861e34b24fb59423a
SHA1 hash: 4287d40b602f8527f7a00d6414638aaad49c5bd3
MD5 hash: 236257fe337142271beb3e7bd9c4fd2b
humanhash: spaghetti-mississippi-cola-bravo
File name:260017# PURCHASE LIST pdf.rar
Download: download sample
Signature HawkEye
File size:909'434 bytes
First seen:2020-03-15 06:47:50 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 12288:dK5D0+Q43FAu6IaFon/U50hrQAYBl1mqGlgXgQCRoPaoFFa1HoCaXSn1uqMsXgiG:A5T/2u/U50Y7PQQCReaJLZXkDs1G
TLSH 8015334FB986FB2782DFF873A42B1F8DE39D224D0E40394C4548A8B7C4B2525EA5D167
Reporter cocaman
Tags:COVID-19 delivery:attachment HawkEye rar

Intelligence


File Origin
# of uploads :
1
# of downloads :
106
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Casdet
Status:
Malicious
First seen:
2020-03-14 14:23:36 UTC
File Type:
Binary (Archive)
Extracted files:
29
AV detection:
19 of 31 (61.29%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

HawkEye

rar 8eb98ee38347084673c5e45fef42a28fd5b48249e520b9feb2e99b809424b75d

(this sample)

Comments