MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b2945f293ee3f68a97cc493774ff1e8818f104fb92ef9dbeead05a32fc7006ff. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Ransomware.Sekhmet


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: b2945f293ee3f68a97cc493774ff1e8818f104fb92ef9dbeead05a32fc7006ff
SHA3-384 hash: 80f47dcac30a1ac7461b00d077365f08c5e2754dcb75e108682f1a7e855af7e4a7783c7da104203a9fab6cb37e31782c
SHA1 hash: a6a6f2dc244d75cac1509e46c7de88ff479b9ee6
MD5 hash: 15fc8a15e86c367586e3661b03bcab44
humanhash: washington-east-fix-coffee
File name:KB083486A.msi
Download: download sample
Signature Ransomware.Sekhmet
File size:372'736 bytes
First seen:2020-08-09 06:50:49 UTC
Last seen:2020-08-09 07:34:07 UTC
File type:Microsoft Software Installer (MSI) msi
MIME type:application/x-msi
ssdeep 6144:nj+vyxz9WYWqpkGbOAqMK/oVZUlz/F8GO53OuzZOJM7CQ5g//s4Y:j+wpWYkGA/WGUGO53OIZkh/Y
Threatray 4 similar samples on MalwareBazaar
TLSH BA84234E3168E028DE630B30919B4AADC7B1EC6C4B562117766AF34F7EB0A95073E1DD
Reporter Jirehlov
Tags:msi Ransomware sekhmet

Intelligence


File Origin
# of uploads :
2
# of downloads :
235
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Ransomware.Sekhmet
Status:
Malicious
First seen:
2020-08-07 18:48:30 UTC
AV detection:
18 of 29 (62.07%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  8/10
Tags:
macro
Behaviour
Suspicious Office macro
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments