MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5a145920b162b6fee3429e2201c03fb8b3a8bc703d13bcac4d21166a05bbe708. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: 5a145920b162b6fee3429e2201c03fb8b3a8bc703d13bcac4d21166a05bbe708
SHA3-384 hash: 50e7907b94df2a6b8688f5dc45d6db5a61625ba6b9f642592f1ab669fac2e87584460060fef9ce6bf89d880141c38073
SHA1 hash: 034cf562362350985a85bc77c41a4faeb0ed7262
MD5 hash: feaab80e40c5c6a53b55d92555485679
humanhash: paris-hawaii-utah-failed
File name:white_notepad_rcdata.vbs
Download: download sample
File size:4'195 bytes
First seen:2026-08-07 05:53:37 UTC
Last seen:Never
File type:Visual Basic Script (vbs) vbs
MIME type:text/plain
ssdeep 96:1yL9A7elvD0MEwULVh9Z0Grh0DLcy0jhAuD/Elif/4/qd:gL32MT6cchDD/zf/4/+
TLSH T1F4818783B4095696D5B78CC00997361BF091A27342F5AD74BF8D84D00F3D36AE3B44A9
Magika vba
Reporter BlinkzSec

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
US US
Vendor Threat Intelligence
No detections
Verdict:
Malicious
File Type:
vbs
First seen:
2026-07-21T04:15:00Z UTC
Last seen:
2026-07-23T13:23:00Z UTC
Hits:
~10
Verdict:
Malware
YARA:
1 match(es)
Tags:
T1059.005 VBScript
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2026-07-21 09:31:34 UTC
File Type:
Text (VBS)
AV detection:
10 of 36 (27.78%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  5/10
Tags:
execution
Behaviour
Executes a VBScript file via the Windows Script Host.
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments