MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 52a7926b55dea72980fc14876d0b1ca4b89c3df768694efeeb87655afa188e98. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AsyncRAT


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 52a7926b55dea72980fc14876d0b1ca4b89c3df768694efeeb87655afa188e98
SHA3-384 hash: fd52121feeed10dca6bb4e5c10de6bfeada98c2bad83824375e22a1b974e06cc3ccfffafe113bfb61dba52e6a4fe7613
SHA1 hash: c68fa17067be671476232343577c7f68016ee735
MD5 hash: 5a28258d1f5d8142dd83deb268cae6ab
humanhash: arkansas-delaware-hotel-oregon
File name:New Purchase Order And Pi Required-Pdf.zip
Download: download sample
Signature AsyncRAT
File size:13'221 bytes
First seen:2020-12-02 12:12:23 UTC
Last seen:2020-12-10 07:55:23 UTC
File type: zip
MIME type:application/zip
ssdeep 384:mq5s5nx93c89L5iLjPOdRxEU19+L6OmByyjyCGNl31x/KqnML:mVvXL5i8XEW+m7BWzl33/JS
TLSH 4452B03145A160F55E2A2674350E3E5CF07D60D6FA0EBBB8795841C97B9C131D278EE1
Reporter GovCERT_CH

Intelligence


File Origin
# of uploads :
23
# of downloads :
194
Origin country :
n/a
Vendor Threat Intelligence
Result
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Zmutzy
Status:
Malicious
First seen:
2020-12-02 11:49:54 UTC
AV detection:
13 of 28 (46.43%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AsyncRAT

zip 52a7926b55dea72980fc14876d0b1ca4b89c3df768694efeeb87655afa188e98

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments