MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 04e761738b2ff7ad4bcc745b4626432713f59580d372fe92f6723b62d40ab5bd. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry


Intelligence 1 File information 1 Yara Comments

SHA256 hash: 04e761738b2ff7ad4bcc745b4626432713f59580d372fe92f6723b62d40ab5bd
SHA3-384 hash: 7347efb04cbdffaa7a06afd73d7f101a129018cb5a47243495f951fc4566405113584b8a0e7e453bb3f6b2d020f36bb0
SHA1 hash: 5970d7e2ae66418ba08b73bc1553499f1286170f
MD5 hash: ccb9fcf1b5052d2d98f4182cd5092b98
humanhash: avocado-paris-emma-asparagus
File name:195389_27854_fmnm.zip
Download: download sample
Signature n/a
File size:269'045 bytes
First seen:2020-06-30 09:12:40 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:9lY3B90t2zqSAhLoouvfJnr9qllf7H25bb/JrFRE5P8Lj4SSLa7B:f5t2ONLoHZr9qllf72Zx05PRa7B
TLSH 5D442228F951C8FD181687294CEF2DA1BF2FDBEF296049806F362ED1AB1850BE55015E
Reporter @jarumlus

Intelligence


Mail intelligence
Trap location Impact
CH Switzerland Low
# of uploads 1
# of downloads 29
Origin country FR FR
ClamAV SecuriteInfo.com.PUA.VBS-in-ZIP.UNOFFICIAL
CERT.PL MWDB Detection:n/a
Link: https://mwdb.cert.pl/sample/04e761738b2ff7ad4bcc745b4626432713f59580d372fe92f6723b62d40ab5bd/
ReversingLabs :Status:Malicious
Threat name:Script-VBS.Trojan.Kryptik
First seen:2020-06-30 09:14:06 UTC
AV detection:14 of 48 (29.17%)
Threat level:   2/5
VirusTotal:No data

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

zip 04e761738b2ff7ad4bcc745b4626432713f59580d372fe92f6723b62d40ab5bd

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments