MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 ac54318e0c6cdefdf195b16177d578559223086dd6e2fc2b9f6aba043df50bc7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 3
| SHA256 hash: | ac54318e0c6cdefdf195b16177d578559223086dd6e2fc2b9f6aba043df50bc7 |
|---|---|
| SHA3-384 hash: | 3327f925fe4cce356753b229a012f4243fd46aa16863bac0bf4a89c18c18265b05758141802057030a67e8472cfa7ad1 |
| SHA1 hash: | 77f20b8a13f8433d85073dede31d87617a6cb925 |
| MD5 hash: | 669cfbd80a76979a7b48187c7698567c |
| humanhash: | alpha-eight-earth-freddie |
| File name: | Scan Copy.cab |
| Download: | download sample |
| File size: | 300'018 bytes |
| First seen: | 2020-08-18 05:41:09 UTC |
| Last seen: | 2020-08-18 12:07:27 UTC |
| File type: | cab |
| MIME type: | application/vnd.ms-cab-compressed |
| ssdeep | 6144:cCTAq0KDYWyJuPsHRrQZIQGCowTobYgGN1fUJgcu850pP8uFQIhzzqOnMh:cXtkYWVkHRrQZiJW6YdfUJunP818zzBs |
| TLSH | D85423F0B11074964944D395347F5AB0937D725B0AA69DEEFE83BE93EECC809D802663 |
| Reporter | |
| Tags: | cab |
cocaman
Malicious emailFrom: "Sylvia Thoa" <acc-hccm@smelogistics.vn>
Received: from swn0.710.zazomika.ml (swn0.710.zazomika.ml [68.183.64.70])
Date: Mon, 17 Aug 2020 22:09:42 -0700
Subject: Bank Slip.
Attachment: Scan Copy.cab
Intelligence
File Origin
# of uploads :
2
# of downloads :
56
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.CryptInject
Status:
Malicious
First seen:
2020-08-18 05:43:05 UTC
File Type:
Binary (Archive)
Extracted files:
22
AV detection:
20 of 28 (71.43%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
cab ac54318e0c6cdefdf195b16177d578559223086dd6e2fc2b9f6aba043df50bc7
(this sample)
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.