MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 38fbb0435ae28453c18ad984fc87bb07dd82f251bc66e8477d1b400e7f4f6248. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 38fbb0435ae28453c18ad984fc87bb07dd82f251bc66e8477d1b400e7f4f6248
SHA3-384 hash: 843aff76a8a8126b768ff6c7d19d62428587840837f2d4487fd5fe1f475dc49ec86ccb4c1babf0b82e4638994ec35d05
SHA1 hash: a4af6770caa6f80a61a0ac687ed473e63f8ad383
MD5 hash: 25af1b64e8f86450b19485488e70453d
humanhash: hotel-speaker-michigan-delta
File name:verynicegirlgivenmebestwordforgreatnesswithgoodthings.hta
Download: download sample
File size:1'906 bytes
First seen:2025-03-19 14:47:15 UTC
Last seen:Never
File type:HTML Application (hta) hta
MIME type:text/html
ssdeep 6:h4QW3tSUNNCZ6mqNA3kxhl2g+7X6rF2T9fnXklMch0MWXfGu:hPgk8NCCNSw2dSF2TdX2MCL8Gu
TLSH T1434126662890CE088172267240FBE918F5E203532348AA01B0CD14272F3170B8D8399F
Magika txt
Reporter abuse_ch
Tags:hta

Intelligence


File Origin
# of uploads :
1
# of downloads :
101
Origin country :
DE DE
Vendor Threat Intelligence
Verdict:
Malicious
Score:
70%
Tags:
malware
Result
Verdict:
Malicious
File Type:
HTA File - Malicious
Behaviour
BlacklistAPI detected
Result
Verdict:
UNKNOWN
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
1 / 100
Behaviour
Behavior Graph:
n/a
Result
Malware family:
n/a
Score:
  3/10
Tags:
discovery
Behaviour
Modifies Internet Explorer settings
System Location Discovery: System Language Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

HTML Application (hta) hta 38fbb0435ae28453c18ad984fc87bb07dd82f251bc66e8477d1b400e7f4f6248

(this sample)

  
Delivery method
Distributed via web download

Comments