MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f2423b5b4e9602c5ae496d69e093cfece7b50e2ad71b752ca1c58424f7db1ca7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: f2423b5b4e9602c5ae496d69e093cfece7b50e2ad71b752ca1c58424f7db1ca7
SHA3-384 hash: ab1b24207ce24ba2050a92c5cac7cd4bbbeb719dd69529bf000f802c540549de2250686588c2ee83b7f575f6eff231b1
SHA1 hash: af0721940235027109cfbaddfdda574b5c759a0f
MD5 hash: 1d06a749085f95ef5a35c187e2c7025f
humanhash: south-princess-twenty-georgia
File name:AIDS_NT.zip
Download: download sample
File size:947'159 bytes
First seen:2020-09-04 10:37:57 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:uGqN/XdctpVtkkKICgvDkBLab3Xldfr4oSsFsA0cO4KfRErkYzWaMSDncp:GNcBtkUHf9ace3sJTcp
TLSH 6715BE06BE619933C02277310921F73997B92FD0BA21C386F6FC2E9BBB16A465D351D1
Reporter cocaman
Tags:Ransomware zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
131
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Ransomware.Encoder
Status:
Malicious
First seen:
2020-09-04 10:39:07 UTC
AV detection:
25 of 48 (52.08%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

zip f2423b5b4e9602c5ae496d69e093cfece7b50e2ad71b752ca1c58424f7db1ca7

(this sample)

Comments