MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 42d34a7da8744c9c543dfa15f559eecd7ca6208cd9ce657363ae4de3fef1098c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Braodo


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 42d34a7da8744c9c543dfa15f559eecd7ca6208cd9ce657363ae4de3fef1098c
SHA3-384 hash: 566d9c3f35404496cabddb78ad27b8b7c691f289781d9ff86c3cc3914891052105564e1cdb072a6b03f559886958633b
SHA1 hash: 83711659cefcbf87d78560f3567f969f6995e0c3
MD5 hash: 4c98c3a83a09a80a540d75a78b1aa591
humanhash: oxygen-arkansas-lemon-utah
File name:ud.js
Download: download sample
Signature Braodo
File size:1'351'217 bytes
First seen:2026-03-13 10:05:08 UTC
Last seen:Never
File type:Java Script (JS) js
MIME type:text/plain
ssdeep 24576:uNs2GhZwiNs2GhZwiNs2GhZwiNs2GhZwuNs2GhZwiNs2GhZwiNs2GhZwiNs2GhZ1:u4hj4hj4hj4hz4hj4hj4hj4hz
TLSH T1CD5502968F272FDA6C392A8D04BE6B85C89C5D333C23C4F6DDDA150FC13859A1592E1B
TrID 45.4% (.MP3) MP3 audio (ID3 v1.x tag) (2500/1/1)
36.3% (.TXT) Text - UTF-16 (LE) encoded (2000/1)
18.1% (.MP3) MP3 audio (1000/1)
Magika txt
Reporter JAMESWT_WT
Tags:Braodo github-com--m1-nc js

Intelligence


File Origin
# of uploads :
1
# of downloads :
147
Origin country :
IT IT
Vendor Threat Intelligence
No detections
Verdict:
Suspicious
Threat level:
  5/10
Confidence:
100%
Tags:
obfuscated repaired
Verdict:
Malicious
File Type:
text
Detections:
HEUR:Trojan.BAT.Agent.gen Trojan.PowerShell.Starter.sb
Gathering data
Verdict:
Malicious
Threat:
Trojan.PowerShell.Starter
Threat name:
Text.Trojan.Generic
Status:
Suspicious
First seen:
2026-02-12 21:05:21 UTC
File Type:
Text (Batch)
AV detection:
4 of 24 (16.67%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
execution
Behaviour
Command and Scripting Interpreter: JavaScript
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Braodo

Java Script (JS) js 42d34a7da8744c9c543dfa15f559eecd7ca6208cd9ce657363ae4de3fef1098c

(this sample)

  
Delivery method
Distributed via web download

Comments