MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4216f63870e2cdfe499d09fce9caa301f9546f60a69c4032cb5fb6d5ceb9af32. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Lazarus


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 4216f63870e2cdfe499d09fce9caa301f9546f60a69c4032cb5fb6d5ceb9af32
SHA3-384 hash: b0addeca043722025d06d1528d82e24724cd40debc45d6f4871d3ed338747788511da75d0b3d1069387b0add4db4eb10
SHA1 hash: 855ae28e312760123f4b7662fe5febc30157d1f2
MD5 hash: f93493bd48d6b98b127542750452fae2
humanhash: eight-nuts-vegan-butter
File name:readme.png
Download: download sample
Signature Lazarus
File size:209'861 bytes
First seen:2022-01-28 09:46:59 UTC
Last seen:Never
File type:unknown
MIME type:image/png
ssdeep 3072:G4PSmXPU+EFWsAUxFS5AvffTf2NAk7bLqyrVIAIfYKVlOcKu1sZmFvfN6M:7PU5+ULCgffTf2NAk7bkNZXd313
TLSH T1C524C10BB39940BBE57ACA79CC531A1AD77678110670DB6F03A4411A1F27791AF3AF32
Reporter Jirehlov
Tags:apt Lazarus PNG

Intelligence


File Origin
# of uploads :
1
# of downloads :
345
Origin country :
n/a
Vendor Threat Intelligence
Verdict:
Likely Malicious
Threat level:
  7.5/10
Confidence:
100%
Threat name:
Win64.Trojan.Generic
Status:
Suspicious
First seen:
2022-01-28 09:47:12 UTC
File Type:
Image
Extracted files:
2
AV detection:
7 of 43 (16.28%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments