MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 12821dc7fd6a37f6ef3246490071740d15c46a524e9ce0691d2a50c08321b5e9. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: 12821dc7fd6a37f6ef3246490071740d15c46a524e9ce0691d2a50c08321b5e9
SHA3-384 hash: 2499d58b95169505e1fc7be773fb5eca3b677b1773cfa60272800e76cc483b8726402b5c24293a04915aaebf7e314f2c
SHA1 hash: 3753f779757e5e2fdf621670aef2eef8688bb64b
MD5 hash: 7c7ce5269268ad048418b662ada3b03a
humanhash: burger-ten-potato-happy
File name:DHL Shipment 6883042880.JS
Download: download sample
File size:3'693'881 bytes
First seen:2026-07-24 12:06:25 UTC
Last seen:Never
File type:Java Script (JS) js
MIME type:text/plain
ssdeep 98304:UgYI17IBNSbgboSnuw4aKDzzdgQTgP1ofDy/Vd/:UgB7IDGjaKnzdbkGfedJ
TLSH T1A6062A42A72C90B1526FD33CE1BAAE78440D600321DDDF1C34AD6628F565E67A79CAF3
Magika javascript
Reporter James_inthe_box
Tags:exe js

Intelligence


File Origin
# of uploads :
1
# of downloads :
97
Origin country :
US US
Vendor Threat Intelligence
No detections
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
anti-debug downloader dropper evasive masquerade obfuscated obfuscated packed repaired xloader
Verdict:
Malicious
File Type:
js
First seen:
2026-07-23T06:44:00Z UTC
Last seen:
2026-07-24T08:47:00Z UTC
Hits:
~1000
Gathering data
Threat name:
Script-JS.Trojan.Heuristic
Status:
Malicious
First seen:
2026-07-23 09:56:07 UTC
File Type:
Text (JavaScript)
AV detection:
8 of 36 (22.22%)
Threat level:
  2/5
Result
Malware family:
n/a
Score:
  7/10
Tags:
discovery execution persistence
Behaviour
Modifies registry class
Scheduled Task/Job: Scheduled Task
Suspicious behavior: EnumeratesProcesses
Suspicious use of WriteProcessMemory
Command and Scripting Interpreter: JavaScript
Enumerates physical storage devices
Executes a command shell one-liner
System Location Discovery: System Language Discovery
Checks computer location settings
Executes dropped EXE
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments