MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 516dc982c55cb340e5970dc62a79c0bfeba90e98220f8981fe7b720835b7d415. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Dridex


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 516dc982c55cb340e5970dc62a79c0bfeba90e98220f8981fe7b720835b7d415
SHA3-384 hash: 4fafb005127826841f7a7b650c5d2f7712926e5ba21c7e02fe97bc6cce2e2841046abd1ecd9e07350d41287938714541
SHA1 hash: 86c02d75dc1271825a944615163180164ae239e4
MD5 hash: b32f888a053012fd006d339f54ebf516
humanhash: butter-muppet-washington-romeo
File name:Dridex powershell.ps1
Download: download sample
Signature Dridex
File size:7'693 bytes
First seen:2020-11-19 13:47:25 UTC
Last seen:Never
File type:PowerShell (PS) ps1
MIME type:text/plain
ssdeep 192:XKldALh9yK8pikhoGGkky8GSnvSJFSJN0XSj:XK3Ih0pQgZ6y8KmYCj
TLSH 16F1D4F1AA37FE8405E771E90BD3388D21159A73513892F8A34D0CDB966C506AF2A3F5
Reporter JAMESWT_WT
Tags:Dridex ps1

Intelligence


File Origin
# of uploads :
1
# of downloads :
244
Origin country :
n/a
Vendor Threat Intelligence
Result
Gathering data
Threat name:
Script-PowerShell.Trojan.Heuristic
Status:
Malicious
First seen:
2020-11-19 13:48:06 UTC
File Type:
Text
AV detection:
1 of 48 (2.08%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments