MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 55367cd057edebd813637c5a857e217a1f52c5d09eb46aa45fef973855f31e56. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AZORult


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 55367cd057edebd813637c5a857e217a1f52c5d09eb46aa45fef973855f31e56
SHA3-384 hash: 3e2b698e3ce846810ffd2d3f6f1463108edfec6207034f77e4512e7189df2821b63accaf0a17e9336949f5e80184f06c
SHA1 hash: 1df99e880ad82f5729032ea5a7aa0e85fcc7f683
MD5 hash: b8fb5a700ab6cc45485b11e243ee8d3b
humanhash: fish-winner-romeo-washington
File name:Catalog.zip
Download: download sample
Signature AZORult
File size:399'144 bytes
First seen:2020-10-02 06:43:55 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:5aKiMGJ3pubiPWUpkPd3QZmrOBo7GMBOLy9ko:5aKFziP/6Pd3NOBKPBOLy9ko
TLSH 28842398DBEC8645080DF3BFA693D850751290F785BDB5C164769FB886E3CFA6638308
Reporter cocaman
Tags:AZORult zip


Avatar
cocaman
Malicious email (T1566.001)
From: "CARME MOLLET <karolina@realpharm.eu>"
Received: "from server.sgbcg.com (server.sgbcg.com [113.11.251.241]) "
Date: "Thu, 01 Oct 2020 14:18:29 +0800"
Subject: "INQUIRY: Request for prices and lead time"
Attachment: "Catalog.zip"

Intelligence


File Origin
# of uploads :
1
# of downloads :
162
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Kryptik
Status:
Malicious
First seen:
2020-10-01 07:20:57 UTC
File Type:
Binary (Archive)
Extracted files:
40
AV detection:
29 of 47 (61.70%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AZORult

zip 55367cd057edebd813637c5a857e217a1f52c5d09eb46aa45fef973855f31e56

(this sample)

  
Delivery method
Distributed via e-mail attachment
  
Dropping
AZORult

Comments