MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 36a43991d2172741277048f9f5d34381153295c83b4067220108c4a258b06cc0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 36a43991d2172741277048f9f5d34381153295c83b4067220108c4a258b06cc0
SHA3-384 hash: 7890b60cf51d87e048fcf85ca9caec951406f8238bae83e1c31ac0b34a853946089b5247dedb47a8996e3bcf7683811a
SHA1 hash: e4865dae46c34f5e8ca34676bbf5a9cc1d0e48dd
MD5 hash: e8ee434511858b733edaee704a5cc73a
humanhash: network-alanine-fillet-comet
File name:SecuriteInfo.com.VB.Trojan.Valyria.3679.10537.17442
Download: download sample
File size:168'960 bytes
First seen:2021-01-21 10:15:42 UTC
Last seen:Never
File type:unknown
MIME type:application/msword
ssdeep 1536:wtaJlTNVRcrrMUXyaJBsc3txOOgvWJVTjxo4Iri1R1ffhvm0+L/0Fr:wtqTdcrrXyQBsc0vWJVi4IrwVf+L/Q
TLSH C5F3C583D9451E37E61809B46F030FEB1B19FE09BB8226D63059FF5A3AB5D22CB4B514
Reporter SecuriteInfoCom

Intelligence


File Origin
# of uploads :
1
# of downloads :
110
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Details
Macro with Startup Hook
Detected macro logic that will automatically execute on document open. Most malware contains some execution hook.
Threat name:
Script-Macro.Trojan.Emotet
Status:
Malicious
First seen:
2021-01-21 03:14:55 UTC
AV detection:
17 of 46 (36.96%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments