MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 2017d4246df7f37c45b4b1a8f74025b8156ac2dc1b202838b9bbe2b57a4cf9cd. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 2
| SHA256 hash: | 2017d4246df7f37c45b4b1a8f74025b8156ac2dc1b202838b9bbe2b57a4cf9cd |
|---|---|
| SHA3-384 hash: | 301271b7016ec5aa1ff15aca17191b46f5119339f86b88f591f553400ee05d3844aa79f7ef493d36d91a7d9396ab1f65 |
| SHA1 hash: | de94bf9f84d3a302f8cd6cbaafe31f8dbb8666db |
| MD5 hash: | 9b16164afac0d9bd34d4115cd7eb8a85 |
| humanhash: | spring-seven-florida-grey |
| File name: | blm2 |
| Download: | download sample |
| File size: | 486'546 bytes |
| First seen: | 2020-06-15 11:22:09 UTC |
| Last seen: | 2020-06-23 08:00:34 UTC |
| File type: | unknown |
| MIME type: | text/plain |
| ssdeep | 1536:tmoRjd978sxFOAqIoHYN06LcFu4xCyoZbmbE/oHnDjVFt9OPMq4ZnlkvSVxY7p7X:Ck |
| TLSH | 76A49A8156BBD66C09CA2CD266C8370D689DBC9F2D496139FE81079ED03EC9D8D93B70 |
| Reporter | |
| Tags: | NetWire |
Intelligence
File Origin
# of uploads :
3
# of downloads :
67
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Script-PowerShell.Trojan.NetWired
Status:
Malicious
First seen:
2020-05-21 17:44:32 UTC
File Type:
Text
AV detection:
11 of 31 (35.48%)
Threat level:
5/5
Please note that we are no longer able to provide a coverage score for Virus Total.
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Web download
unknown 2017d4246df7f37c45b4b1a8f74025b8156ac2dc1b202838b9bbe2b57a4cf9cd
(this sample)
Delivery method
Distributed via web download
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.