MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 375d38c203923cad9bd41b617d02e7c8c000cd4439bd7baa849d9c6ad6385736. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 375d38c203923cad9bd41b617d02e7c8c000cd4439bd7baa849d9c6ad6385736
SHA3-384 hash: e393eae331c26cc9749801a8c246870f5736facf9dc7644e43b106a4a46d18e31b8008ffa6d46029949ae9369a5fc30f
SHA1 hash: daaac1642bcbf48f1d1384c3f91fd961b73bdbfa
MD5 hash: 662a9d171032229455736fdb99169f66
humanhash: mockingbird-ink-burger-hydrogen
File name:Bill of Lading_PDF.r00
Download: download sample
File size:295'723 bytes
First seen:2021-01-20 21:02:22 UTC
Last seen:2021-01-21 06:17:51 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:y6odcTcJiZ5nduPuMMsvSiv8kqSNhvkGBI800BEvxwrg4YsiLzN+llYP:ylcTZUP1HpPbNhvfB4/v2NY1zNEYP
TLSH 83542339E9D3F5798C4F0A5BCD2E062418E545F9CB5DFC8A9F1AABCD63843E185488C2
Reporter cocaman
Tags:r00

Intelligence


File Origin
# of uploads :
2
# of downloads :
113
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.OutBreak
Status:
Suspicious
First seen:
2021-01-20 01:11:32 UTC
File Type:
Binary (Archive)
Extracted files:
1
AV detection:
15 of 28 (53.57%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

zip 375d38c203923cad9bd41b617d02e7c8c000cd4439bd7baa849d9c6ad6385736

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments