MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 20cf29f926a18b44f580137ddb65d81bc0ed419412910a7682ee7b95b186ac82. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



PlutoCrypt


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 20cf29f926a18b44f580137ddb65d81bc0ed419412910a7682ee7b95b186ac82
SHA3-384 hash: 62517036db44c4bd1a49f5e106f1eb69b8a48dd55f252f5834063f5a611658524dbd07a0d4ceaadfae9d2eb6c927a4c7
SHA1 hash: dfcc0b983430d0bd1e18b40d6d0f817a8d198bfc
MD5 hash: 16dc113cf13f4e783d0849cb0873ca8d
humanhash: lemon-iowa-april-nine
File name:enc.xml
Download: download sample
Signature PlutoCrypt
File size:2'684 bytes
First seen:2023-04-14 16:25:06 UTC
Last seen:Never
File type:unknown
MIME type:text/xml
ssdeep 48:yei1q97zXA6+Onknu9V9Lvarx+i3iudupRCRf9ufAuRa7T5XhPsV8iwp+++:tXAOnknQGki3igV9ll7dhFH+
TLSH T1CC5127536BEA1109F1F76B2CBEB720228E677D555939C46D00AC240CCBF7E6289607B7
TrID 90.3% (.) Windows 7 Task Scheduler job (141000/1/20)
7.6% (.XML) Generic XML (UTF-16 LE) (12000/1)
1.2% (.TXT) Text - UTF-16 (LE) encoded (2000/1)
0.6% (.MP3) MP3 audio (1000/1)
Reporter 0xToxin
Tags:199-192-20-58 plutocrypt Ransomware

Intelligence


File Origin
# of uploads :
1
# of downloads :
408
Origin country :
IL IL
Vendor Threat Intelligence
Result
Verdict:
UNKNOWN
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments