MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 397efebfb36a3b0263bd407e439cdd2eeecce77fc27d5fcd70012617a861de0f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 397efebfb36a3b0263bd407e439cdd2eeecce77fc27d5fcd70012617a861de0f
SHA3-384 hash: 7445b7bf00810c571c2a3097eb8d4aed368061312d76d26533255c4c24d81364646eb0ea5faf8e05d8c0c3a0107d2642
SHA1 hash: ac47e7fe9b53c1cdce07bde42af2953e8be626fa
MD5 hash: de6ab259f50b2c3fef8b391357c3c76d
humanhash: undress-social-nebraska-hamper
File name:Order List.arj
Download: download sample
File size:265'877 bytes
First seen:2020-04-21 10:00:11 UTC
Last seen:Never
File type: arj
MIME type:application/x-rar
ssdeep 6144:FXBfbeVqK3iFNZ9oyQunHUdAtKd2T1t23HFpE27:JBkqK3WHoyJUduKUT1wHFSg
TLSH 4B4422FB86C1260FE5C4984B6246B132989F55359E7A7843EC2B81ECFEEED344714493
Reporter cocaman
Tags:arj


Avatar
cocaman
Malicious email
From: "Jose Landeros" <treutel@haroldbray.gq>
Received: from kaka.com (unknown [94.177.232.54])
Date: Tue, 21 Apr 2020 00:22:56 -0700
Subject: Urgent Order List

Intelligence


File Origin
# of uploads :
1
# of downloads :
78
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-04-21 10:35:26 UTC
File Type:
Binary (Archive)
Extracted files:
3
AV detection:
18 of 31 (58.06%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

arj 397efebfb36a3b0263bd407e439cdd2eeecce77fc27d5fcd70012617a861de0f

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments