MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 72baaecfb7c235e5ecd08aa1d8d8e210edc452f230ece050e1e02badbafadf67. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Dridex


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 72baaecfb7c235e5ecd08aa1d8d8e210edc452f230ece050e1e02badbafadf67
SHA3-384 hash: ae04d8cc7cc050c6f3188c8cbf9efb3cd002bc9fd39db0fee8dd5cd27dd447f2d9eb97fb7adc5f7c4235d7d0e5525dd9
SHA1 hash: 2cc732a9b0620c15bebf1bbfe4b9dc8c0a22f8c9
MD5 hash: d3e868f6112ee5c6a414b6f3087a5276
humanhash: aspen-uncle-uncle-magazine
File name:Document#974529430157.vbs
Download: download sample
Signature Dridex
File size:1'010'822 bytes
First seen:2020-04-29 07:15:15 UTC
Last seen:Never
File type:Visual Basic Script (vbs) vbs
MIME type:text/plain
ssdeep 12288:vPwj6cToBeyPqdIfYd5JluWgdMpoO64ydonq5OlB3UriosulqRMYbboMz1Mq:vPgro8yyBd5JluPriosuUM4ciMq
Threatray 73 similar samples on MalwareBazaar
TLSH B725D4668DE20D7E76C98D2D8A4538FD6C8542F566E0C320D5BABC3F52BFD340978A06
Reporter jarumlus
Tags:Dridex

Intelligence


File Origin
# of uploads :
1
# of downloads :
103
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Script-VBS.Trojan.F04ie00ds20
Status:
Malicious
First seen:
2020-04-29 07:35:39 UTC
File Type:
Text
AV detection:
9 of 31 (29.03%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments