MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 797e6d5cad71f1ae2658c7325d904ce9f1ab5edc66f73572575e91a397311b6a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 797e6d5cad71f1ae2658c7325d904ce9f1ab5edc66f73572575e91a397311b6a
SHA3-384 hash: 86c833da41514092959edc441d9ca655ffed60124a048623aa8cc368f369a3d00879171bdb8e3a3e7112649e6d7a0a16
SHA1 hash: 76a1f2fc92289800a88944a9a238133d4f95c4a5
MD5 hash: 8b59d8236b0b1edb7dac14ff0c4bb078
humanhash: quebec-twenty-autumn-vermont
File name:goodisthebestthingsbetterwaytotellhimbestfor.hta
Download: download sample
File size:5'758 bytes
First seen:2025-04-09 08:07:39 UTC
Last seen:Never
File type:HTML Application (hta) hta
MIME type:text/html
ssdeep 3:TUVhQBlSXIFkmF5cItMyURz8S4EdXmF///T2:T8QDkIa5ItMrzD4E0HT2
TLSH T139C19288CEA0C86C6974896235F0D40CC3AD680C9245DEE9B98D180E6B522780A01500
Magika php
Reporter abuse_ch
Tags:hta

Intelligence


File Origin
# of uploads :
1
# of downloads :
93
Origin country :
DE DE
Vendor Threat Intelligence
Result
Verdict:
Clean
File Type:
HTA File
Payload URLs
URL
File name
http://www.211dns.com
HTA File
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
1 / 100
Behaviour
Behavior Graph:
n/a
Threat name:
Text.Trojan.Generic
Status:
Suspicious
First seen:
2025-04-09 08:08:10 UTC
File Type:
Text (JavaScript)
AV detection:
3 of 24 (12.50%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  3/10
Tags:
discovery
Behaviour
System Location Discovery: System Language Discovery
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

HTML Application (hta) hta 797e6d5cad71f1ae2658c7325d904ce9f1ab5edc66f73572575e91a397311b6a

(this sample)

  
Delivery method
Distributed via web download

Comments