MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 79485989ae3955e10e7fcdc9deeb33edae0966067e1f4748dcea3a98653e85d1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 79485989ae3955e10e7fcdc9deeb33edae0966067e1f4748dcea3a98653e85d1
SHA3-384 hash: 2aab880280dda2a5cec3a60a9170a8287b56caa3c4aaca4134030f76c6f158d4bd75fb60fe8d0c0475643380fc905336
SHA1 hash: 1e94ae555d333b48e7aa20657d1855a48853dbdb
MD5 hash: 69f4005b796eb39d90fd5d65f3f2b1fd
humanhash: seven-north-oven-nine
File name:naftkhodm.zip
Download: download sample
File size:8'976'110 bytes
First seen:2025-11-27 09:07:53 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 196608:a9ZJUC+zjzSVE2Hvv+rh6jM+X6wte6OUtIF1ffhz8ibkOv0xmBs:a9ZJUC+zjzSNHvv+rUq8vOPFJhrrv0g+
TLSH T179963330FB551455DD0F687C288A1581110FB295BA24A8AE3C10B6B16B2F6F97BF0F6F
Magika zip
Reporter juroots
Tags:zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
30
Origin country :
IL IL
Vendor Threat Intelligence
Verdict:
Malicious
File Type:
zip
First seen:
2025-11-27T08:23:00Z UTC
Last seen:
2025-11-27T08:32:00Z UTC
Hits:
~10
Verdict:
inconclusive
YARA:
3 match(es)
Tags:
Zip Archive
Gathering data
Result
Malware family:
n/a
Score:
  6/10
Tags:
adware android discovery execution spyware
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

zip 79485989ae3955e10e7fcdc9deeb33edae0966067e1f4748dcea3a98653e85d1

(this sample)

  
Delivery method
Distributed via web download

Comments