MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b6a8b272f3ba3ffd20e12d45f1d80458aea2ff8d4d237613489bb36acc296058. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: b6a8b272f3ba3ffd20e12d45f1d80458aea2ff8d4d237613489bb36acc296058
SHA3-384 hash: 25f006a4ca54163e8bbd0a2acf27bd9510aacdf764b33f9c7dc7cbd89d2546efcefa10687fa2efb0a9f4c9c8771c1e87
SHA1 hash: 9cfbbf55ea9f2f4187c967f1a4aa52c87d45637b
MD5 hash: aa5ee3295087479d0d80f69b40c2ac2d
humanhash: golf-tennis-lake-sweet
File name:by7EWNrN.ps1
Download: download sample
File size:81 bytes
First seen:2020-11-14 12:49:32 UTC
Last seen:Never
File type:PowerShell (PS) ps1
MIME type:text/plain
ssdeep 3:qo8tSXRKBJ9KLxKCQDnWiMLZnpgP:B0zmKtLKTs
Reporter SecNameless

Intelligence


File Origin
# of uploads :
1
# of downloads :
297
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
SUSPICIOUS
Threat name:
Script-PowerShell.Downloader.Heuristic
Status:
Malicious
First seen:
2020-11-14 12:50:06 UTC
AV detection:
4 of 29 (13.79%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments