🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 82f63cf2829fe3b319b262b2880d57626ba2f0faf7a73b12e35791e223370eb3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



WikiLoader


Vendor detections: 8


Intelligence 8 IOCs YARA File information Comments

SHA256 hash: 82f63cf2829fe3b319b262b2880d57626ba2f0faf7a73b12e35791e223370eb3
SHA3-384 hash: 0c4b5932f2c4a507f1c9172732bf9eec27f44892f1fa35caea647920694decfb68e7987a216ab4f3688cc1fc7068058a
SHA1 hash: 26c2a57bee18556aa6ad44d76282097b4c1fdefc
MD5 hash: 4f3eaf60ca8e5f260259439561cc16e1
humanhash: winter-snake-robert-jupiter
File name:R01337.pdf
Download: download sample
Signature WikiLoader
File size:59'932 bytes
First seen:2024-02-22 17:54:52 UTC
Last seen:Never
File type: pdf
MIME type:application/pdf
ssdeep 1536:Jf9S+ExI72l/6DIMsDZG0lQvu2/acjwGL8zrfD:HSJGDIMkGXmQjX8b
TLSH T10E43D0D5EC058151594D6DF96CEB80A3DDF150613B57E81E3C6CAC8EEB41F8CABA6320
Reporter proxylife
Tags:pdf WikiLoader

Intelligence


File Origin
# of uploads :
1
# of downloads :
576
Origin country :
US US
Vendor Threat Intelligence
Label:
Benign
Suspicious Score:
3.4/10
Score Malicious:
34%
Score Benign:
66%
Result
Threat name:
n/a
Detection:
malicious
Classification:
evad
Score:
52 / 100
Signature
Downloads suspicious files via Chrome
Yara detected ZipBomb
Behaviour
Behavior Graph:
Threat name:
Document-PDF.Trojan.Wikiloader
Status:
Suspicious
First seen:
2024-02-22 16:14:18 UTC
File Type:
Document
Extracted files:
12
AV detection:
8 of 24 (33.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments