MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 40e61a6c5f46702a808cb94a2f27c6460b5a86c9878d831213c3acd31eee1984. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



XWorm


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 40e61a6c5f46702a808cb94a2f27c6460b5a86c9878d831213c3acd31eee1984
SHA3-384 hash: 1c319edc91b7bcbe9516320059f82ec7577f3d6656588504abaf3c69f95b46d2420abc454279579a404840d45085ba32
SHA1 hash: f84340391a3aaf5a361415c309a4177203856bb9
MD5 hash: 945c48b426452f9da691c46f2fdc6a07
humanhash: moon-lemon-maryland-seven
File name:Damaged_item.img
Download: download sample
Signature XWorm
File size:1'245'184 bytes
First seen:2024-02-16 18:02:53 UTC
Last seen:Never
File type: img
MIME type:application/x-iso9660-image
ssdeep 96:590UlnHeWQU/9JXcCU8uIeYM5+IkwAf8f:T0UlH3HXQwkgxwAU
TLSH T13F45B1114BA80059F3B617354AB12735A7B1F81633A38B4F370C131D5FAAAD28D7679B
TrID 47.8% (.ISO/UDF) UDF disc image (2114500/1/6)
46.3% (.NULL) null bytes (2048000/1)
5.7% (.HTP) HomeLab/BraiLab Tape image (256000/1)
0.0% (.ISO) ISO 9660 CD image (2545/36/1)
0.0% (.BIN/MACBIN) MacBinary 1 (1033/5)
Reporter malwarology
Tags:img xworm

Intelligence


File Origin
# of uploads :
1
# of downloads :
101
Origin country :
US US
File Archive Information

This file archive contains 1 file(s), sorted by their relevance:

File name:DAMAGED_.VBS
File size:560 bytes
SHA256 hash: f0e4e2656467459bfde295f51d68f5b1de5c03a504c2c7c8dc4f0d635ed0da26
MD5 hash: 1d08ea9c2b5742989ddd848f545ddf00
MIME type:text/plain
Signature XWorm
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
nemucod virus
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2024-02-16 15:49:39 UTC
File Type:
Binary (Archive)
Extracted files:
1
AV detection:
5 of 23 (21.74%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments