🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 359ab5e0b57da0307ca9472e5b225dcd0f9dc9bf2efd2f15b1ca45b78791b6bc. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Kimsuky


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 359ab5e0b57da0307ca9472e5b225dcd0f9dc9bf2efd2f15b1ca45b78791b6bc
SHA3-384 hash: 91289c8d85dfd98cdaf9404d2b1de6802a5cee7c333c8f496e045174f88b797e956afd23c1001758f73791b353882208
SHA1 hash: cebaf2bfcf1f2297d18e4d35efb2597adc334513
MD5 hash: a0c7e9dc69e439cb431e6dea9f0d5930
humanhash: ohio-golf-august-muppet
File name:359ab5e0b57da0307ca9472e5b225dcd0f9dc9bf2efd2f15b1ca45b78791b6bc
Download: download sample
Signature Kimsuky
File size:710'268 bytes
First seen:2021-08-04 14:30:45 UTC
Last seen:Never
File type: pdf
MIME type:application/pdf
ssdeep 12288:e9wwBpdbie7g84OTKuBqOX1BNVT5m+YH+JARGEwuxkIOcaj/5vDTWjaOyG2:Xkdz7y2DBJ1dYHoARzTkjcwvDTWOL
TLSH T1A4E42397C3C1D5429A8608B657A0957319D74149B1C3AC3B7C3CF6F60B29E4EDEA2EC2
Reporter Arkbird_SOLG
Tags:apt Kimsuky pdf

Intelligence


File Origin
# of uploads :
1
# of downloads :
606
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Document-PDF.Trojan.Heuristic
Status:
Malicious
First seen:
2021-08-02 15:23:21 UTC
AV detection:
8 of 45 (17.78%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments