MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2017d4246df7f37c45b4b1a8f74025b8156ac2dc1b202838b9bbe2b57a4cf9cd. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 2017d4246df7f37c45b4b1a8f74025b8156ac2dc1b202838b9bbe2b57a4cf9cd
SHA3-384 hash: 301271b7016ec5aa1ff15aca17191b46f5119339f86b88f591f553400ee05d3844aa79f7ef493d36d91a7d9396ab1f65
SHA1 hash: de94bf9f84d3a302f8cd6cbaafe31f8dbb8666db
MD5 hash: 9b16164afac0d9bd34d4115cd7eb8a85
humanhash: spring-seven-florida-grey
File name:blm2
Download: download sample
File size:486'546 bytes
First seen:2020-06-15 11:22:09 UTC
Last seen:2020-06-23 08:00:34 UTC
File type:unknown
MIME type:text/plain
ssdeep 1536:tmoRjd978sxFOAqIoHYN06LcFu4xCyoZbmbE/oHnDjVFt9OPMq4ZnlkvSVxY7p7X:Ck
TLSH 76A49A8156BBD66C09CA2CD266C8370D689DBC9F2D496139FE81079ED03EC9D8D93B70
Reporter JAMESWT_WT
Tags:NetWire

Intelligence


File Origin
# of uploads :
3
# of downloads :
67
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Script-PowerShell.Trojan.NetWired
Status:
Malicious
First seen:
2020-05-21 17:44:32 UTC
File Type:
Text
AV detection:
11 of 31 (35.48%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

unknown 2017d4246df7f37c45b4b1a8f74025b8156ac2dc1b202838b9bbe2b57a4cf9cd

(this sample)

Comments