MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 812546f30060ec4b6066aad50bb2692e3a452a6fb818b3bfcfcf4d2f63e2005b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Kutaki


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 812546f30060ec4b6066aad50bb2692e3a452a6fb818b3bfcfcf4d2f63e2005b
SHA3-384 hash: 62cc44f68f0a14e0d4dc0d8a250ae63d47d3e6c24428e9c8d393c07f73027ef658603cbd68d0f95f2c1bb5a67536a8d7
SHA1 hash: ffd62027cf8021bc3f13468e567336810d6e0d46
MD5 hash: 27e90aa0a92740720e9043c6f1f9dd2b
humanhash: summer-may-music-red
File name:SHRIKESH_Challan.zip
Download: download sample
Signature Kutaki
File size:375'333 bytes
First seen:2020-08-05 08:12:06 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:4VqMhcm1M3ch755SBydKQ104G5A9jCHd/VCSO3hwNlMxk2ufQMS6y+lqQHTonErb:wBcEMMh755SIdKt4YA9jC9/whIvYMS6V
TLSH 018423A85E4E0F6C9ACE28788783E573135487E3666475009DEF23799016F83E6EF907
Reporter abuse_ch
Tags:Kutaki zip


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: pro152-32.mxout.rediffmailpro.com
Sending IP: 119.252.152.32
From: SHRIKESH ARUNRAO HARANE <shrikesh.harane@abhijeet.in>
Subject: Transfered an amount of Rs.12,08,194
Attachment: SHRIKESH_Challan.zip (contains "SHRIKESH_Challan.cmd")

Intelligence


File Origin
# of uploads :
1
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Spyware.Kutaki
Status:
Malicious
First seen:
2020-08-05 08:14:06 UTC
AV detection:
30 of 48 (62.50%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Kutaki

zip 812546f30060ec4b6066aad50bb2692e3a452a6fb818b3bfcfcf4d2f63e2005b

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments