MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 38e5cddaa9a377d5c9ced2bf395de01727d0211baf5b14aa0a8b76e2f60072e2. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 38e5cddaa9a377d5c9ced2bf395de01727d0211baf5b14aa0a8b76e2f60072e2
SHA3-384 hash: 6ceedb690607e85497ee7b20c3dced03c6fe2cdba20f749613ed19b11e1dbafb55ab200d583efbe4ef2347d481abe3ff
SHA1 hash: e0573e91e3ae1beeeb3f8262b9535d3ea5e67a2c
MD5 hash: 9e338680c0d417a652f9d215102f70c7
humanhash: illinois-wolfram-may-kitten
File name:SecuriteInfo.com.BehavesLike.Win32.Generic.gc.1137
Download: download sample
File size:449'536 bytes
First seen:2020-05-29 22:50:05 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash 8c6434348e93b2e3234dff6be36e1a00
ssdeep 12288:p6XQURE0bETmUGqwLmb94fAN5+VMq1j7KQXFS:pA7bBqwLmeGq1KQXFS
Threatray 318 similar samples on MalwareBazaar
TLSH B5A40236B380845AE329C670D920E7B4652D7C7E97114B7F03882D5E5A713E38DAD3AE
Reporter SecuriteInfoCom

Intelligence


File Origin
# of uploads :
1
# of downloads :
71
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-29 21:21:19 UTC
File Type:
PE (Exe)
Extracted files:
48
AV detection:
20 of 31 (64.52%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Modifies system certificate store
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe 38e5cddaa9a377d5c9ced2bf395de01727d0211baf5b14aa0a8b76e2f60072e2

(this sample)

Comments