MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0d46dc30679da9f42918ea59e1ab095a0762324a8d480e75c0a5c29b3328f17b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 0d46dc30679da9f42918ea59e1ab095a0762324a8d480e75c0a5c29b3328f17b
SHA3-384 hash: 02e50d50c58056e729325f0b1bec8e69c427da5485238f1ad52f5909a7cbfc36a1065a19a17b77e800ec12513da24fae
SHA1 hash: df4beb6717f786f5c438d0a856484038d1a59cfa
MD5 hash: ec81008ad6ef3e33673473037f7d5a23
humanhash: ack-nine-oklahoma-pasta
File name:service invoice.img
Download: download sample
File size:1'245'184 bytes
First seen:2020-10-08 17:48:56 UTC
Last seen:Never
File type: img
MIME type:application/x-iso9660-image
ssdeep 12288:4Mu5xEAghTTZzPnJdrjtUkMJrVD4PnW5yE3pyo9Z0U5FaCd0Jibvnt7:4x1ghTTZzPn/+TT8LILZFMiLt7
TLSH 5345F17197A49A62D4BD17BA8435140043F1EA26DB53E64EBEFD34EA1BB3BC24433187
Reporter abuse_ch
Tags:img


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: horbach-technik.de
Sending IP: 37.48.85.203
From: Lucia Bacova <michael.friedrich@horbach-technik.de>
Subject: SOA
Attachment: service invoice.img (contains "G6Uqtl4oTUrMfD4.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
106
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Generic
Status:
Malicious
First seen:
2020-10-08 10:21:42 UTC
AV detection:
19 of 48 (39.58%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

img 0d46dc30679da9f42918ea59e1ab095a0762324a8d480e75c0a5c29b3328f17b

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments