MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a34faf6800b9cc911ec7c35b85ba9e9bbcd33beecef26e2ac9031468441a1356. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry


Intelligence 1 File information 1 Yara Comments

SHA256 hash: a34faf6800b9cc911ec7c35b85ba9e9bbcd33beecef26e2ac9031468441a1356
SHA3-384 hash: f177a26ab4ebf0634de8cd690a564a816a1557335afca79730f35e6af3e2b763b3779be1dafc2aca3efcee017cb942b0
SHA1 hash: 673ccb316fd1200d7385193529d5a5dac8681676
MD5 hash: 9098828031de8a7c26d425f337c8fe94
humanhash: south-lithium-seven-pasta
File name:5467049_737469_wziw.zip
Download: download sample
Signature n/a
File size:266'035 bytes
First seen:2020-06-30 07:27:30 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:ilY3B90t2zqSAhLoouvfJnr9qllf7H25bb/JrFRE5P8dRotgQIZ:85t2ONLoHZr9qllf72Zx05P4
TLSH D644232D7D45CCFD081BD6598C6E3AF4BF1F8BDF116889956E372AD0AB08147DA4018E
Reporter @jarumlus

Intelligence


Mail intelligence
Trap location Impact
CH Switzerland Low
# of uploads 1
# of downloads 31
Origin country FR FR
ClamAV SecuriteInfo.com.PUA.VBS-in-ZIP.UNOFFICIAL
CERT.PL MWDB Detection:n/a
Link: https://mwdb.cert.pl/sample/a34faf6800b9cc911ec7c35b85ba9e9bbcd33beecef26e2ac9031468441a1356/
ReversingLabs :Status:Malicious
Threat name:Script-VBS.Trojan.Kryptik
First seen:2020-06-30 07:29:04 UTC
AV detection:13 of 48 (27.08%)
Threat level:   2/5
VirusTotal:No data

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

zip a34faf6800b9cc911ec7c35b85ba9e9bbcd33beecef26e2ac9031468441a1356

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments