MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9645d1974020b793786685f8f96603060c5699a75615a4da471ac10fa9db882b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 10


Intelligence 10 IOCs YARA File information Comments

SHA256 hash: 9645d1974020b793786685f8f96603060c5699a75615a4da471ac10fa9db882b
SHA3-384 hash: b1878ec2fe4451ae2ba97516d3e77727091ea4b92948cee7ac66111b581d52424136c0a4defc347dcce40d475aad2137
SHA1 hash: 4b1ed734061aadfb8a981a7f0e941040164df853
MD5 hash: 0f5ee3c0ff559cdd3c322e57de2dbe48
humanhash: speaker-wolfram-happy-fanta
File name:9645d1974020b793786685f8f96603060c5699a75615a4da471ac10fa9db882b.pdf
Download: download sample
File size:51'734 bytes
First seen:2026-02-04 05:05:38 UTC
Last seen:Never
File type: pdf
MIME type:application/pdf
ssdeep 1536:tjlY6GGXjAbfeXIEjj64IsTgbtBbgfbuU:tjlXlcbfdE/aBBbbU
TLSH T18B33F1B1BE96ED20F520C1B29173BB715198FB07E3D73351413DDA3297C5B805A8A6E8
Magika pdf
Reporter JAMESWT_WT
Tags:147-124-222-89 pdf

Intelligence


File Origin
# of uploads :
1
# of downloads :
94
Origin country :
IT IT
Vendor Threat Intelligence
No detections
Verdict:
Malicious
Score:
81.4%
Tags:
ransomware extens sage
Verdict:
Likely Malicious
Threat level:
  7.5/10
Confidence:
100%
Tags:
phishing
Label:
Benign
Suspicious Score:
10/10
Score Malicious:
1%
Score Benign:
99%
Verdict:
Malicious
File Type:
pdf
First seen:
2025-11-05T08:47:00Z UTC
Last seen:
2026-02-04T04:51:00Z UTC
Hits:
~100
Verdict:
inconclusive
YARA:
3 match(es)
Threat name:
Document-PDF.Trojan.Heuristic
Status:
Malicious
First seen:
2025-11-05 18:29:39 UTC
File Type:
Document
Extracted files:
4
AV detection:
10 of 36 (27.78%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments