MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 24a570ee018f4ed6d404956f5afc425de03f90828bf66cac0cc5da49188d41e8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 24a570ee018f4ed6d404956f5afc425de03f90828bf66cac0cc5da49188d41e8
SHA3-384 hash: 66881d2fa29b33fef8a4b87aa2d2d25ae9882875cb1bd9baa495a46f3af5c82aaea09ab387f32055eac5a3144842a6b2
SHA1 hash: ebe0a98b3b97bc8b7ce5025ac5fced919a4201bc
MD5 hash: 78e6190ac853e2a66467a254cb0ab4ec
humanhash: arkansas-moon-kentucky-iowa
File name:KlJuhaf7.zip
Download: download sample
File size:149'147 bytes
First seen:2020-08-05 07:18:31 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 3072:/aEuhQrX/sO4BcxtIcW/FEJv3RRLkj/mj:SEuhQ4ONrIcW/kfpj
TLSH C2E312C663D96CE8F42944363743B93CF4DA987C261B1B950BB873E61D13852BFB0A85
Reporter JAMESWT_WT
Tags:Qakbot

Intelligence


File Origin
# of uploads :
1
# of downloads :
216
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Script-VBS.Downloader.Obfuser
Status:
Malicious
First seen:
2020-08-04 18:31:20 UTC
File Type:
Binary (Archive)
Extracted files:
1
AV detection:
17 of 29 (58.62%)
Threat level:
  3/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

zip 24a570ee018f4ed6d404956f5afc425de03f90828bf66cac0cc5da49188d41e8

(this sample)

  
Delivery method
Distributed via web download

Comments