MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3648fe001994cb9c0a6b510213c268a6bd4761a3a99f3abb2738bf84f06d11cf. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry


Intelligence 4 File information Yara Comments

SHA256 hash: 3648fe001994cb9c0a6b510213c268a6bd4761a3a99f3abb2738bf84f06d11cf
SHA3-384 hash: 1428b1f891638fa228c4e429b55c9980bc38f17436f7fe676f29661033e003a9140b2c29234fe231d159bec9a4a05cb2
SHA1 hash: 5677f26e926c8c8d7f7bf7eb085a9e48549a268b
MD5 hash: fa9b3dfdb4b97dfe0db5991472f89399
humanhash: harry-crazy-mobile-island
File name:f.dll
Download: download sample
Signature ZLoader
File size:524'288 bytes
First seen:2020-04-20 15:42:05 UTC
Last seen:2020-04-20 19:45:42 UTC
File type:DLL dll
MIME type:application/x-dosexec
imphash 01479b33d2951ecc29b271a819f667d9
ssdeep 12288:7do6GchQc7N2h17L0/BRHdziwBAoXkW1SnyAP7:7O6G0Qc7Ne1c/BRH5JUfz
TLSH 51B4E112B668FA9CE8B05138CC48E1740D76EC5AADB742C7B0993ADF97EE3710F06125
Reporter @abuse_ch
Tags:dll ZLoader

Intelligence


File Origin
# of uploads :
3
# of downloads :
35
Origin country :
CH CH
Mail intelligence
No data
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Zbot
Status:
Malicious
First seen:
2020-04-20 16:28:42 UTC
AV detection:
23 of 31 (74.19%)
Threat level
  2/5

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

ZLoader

DLL dll 3648fe001994cb9c0a6b510213c268a6bd4761a3a99f3abb2738bf84f06d11cf

(this sample)

Comments