MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 0d46dc30679da9f42918ea59e1ab095a0762324a8d480e75c0a5c29b3328f17b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 4
| SHA256 hash: | 0d46dc30679da9f42918ea59e1ab095a0762324a8d480e75c0a5c29b3328f17b |
|---|---|
| SHA3-384 hash: | 02e50d50c58056e729325f0b1bec8e69c427da5485238f1ad52f5909a7cbfc36a1065a19a17b77e800ec12513da24fae |
| SHA1 hash: | df4beb6717f786f5c438d0a856484038d1a59cfa |
| MD5 hash: | ec81008ad6ef3e33673473037f7d5a23 |
| humanhash: | ack-nine-oklahoma-pasta |
| File name: | service invoice.img |
| Download: | download sample |
| File size: | 1'245'184 bytes |
| First seen: | 2020-10-08 17:48:56 UTC |
| Last seen: | Never |
| File type: | img |
| MIME type: | application/x-iso9660-image |
| ssdeep | 12288:4Mu5xEAghTTZzPnJdrjtUkMJrVD4PnW5yE3pyo9Z0U5FaCd0Jibvnt7:4x1ghTTZzPn/+TT8LILZFMiLt7 |
| TLSH | 5345F17197A49A62D4BD17BA8435140043F1EA26DB53E64EBEFD34EA1BB3BC24433187 |
| Reporter | |
| Tags: | img |
abuse_ch
Malspam distributing unidentified malware:HELO: horbach-technik.de
Sending IP: 37.48.85.203
From: Lucia Bacova <michael.friedrich@horbach-technik.de>
Subject: SOA
Attachment: service invoice.img (contains "G6Uqtl4oTUrMfD4.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
106
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Generic
Status:
Malicious
First seen:
2020-10-08 10:21:42 UTC
AV detection:
19 of 48 (39.58%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Kryptik
Score:
1.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
img 0d46dc30679da9f42918ea59e1ab095a0762324a8d480e75c0a5c29b3328f17b
(this sample)
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.