🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a54310f2ccd2c2a17651371d471611e523e61313dfcb77369b37ce7b28fd30a1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



StormKitty


Vendor detections: 9


Intelligence 9 IOCs YARA File information Comments

SHA256 hash: a54310f2ccd2c2a17651371d471611e523e61313dfcb77369b37ce7b28fd30a1
SHA3-384 hash: 0e326f4e028dea54dc5a0726ee573ef83176c0b1ed02c1033430cce6c1cadb0a893524faa9005d08b2b766795c250bd8
SHA1 hash: 06e2b610e3cc6a60b9fc88169926bab2ca295c6b
MD5 hash: 67e8bc169ee7402703bba860370345f4
humanhash: lima-oscar-mockingbird-high
File name:25675731912.zip
Download: download sample
Signature StormKitty
File size:876'018 bytes
First seen:2026-08-17 09:12:15 UTC
Last seen:Never
File type: zip
MIME type:application/zip
Note:This file is a password protected archive. The password is: infected
ssdeep 24576:i76Fw62HTqPtV9AxJsy8BbF+/t0F4fztUTqkIrjT:i+FwQP9AIBYtaTTzIr
TLSH T1811533EA781089107F6C1D9F41FCA50D652D80A1861F0FEE5BCB35AFABE443856E93D8
Magika zip
Reporter bryancampbell
Tags:HOLDINGHANDS StormKitty zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
142
Origin country :
GB GB
File Archive Information

This file archive contains 1 file(s), sorted by their relevance:

File name:8ab3212afc5bd442b877fc949e4f8e7de64606d4d6ffc7cd507dba55909eccd0
File size:1'966'775 bytes
SHA256 hash: 8ab3212afc5bd442b877fc949e4f8e7de64606d4d6ffc7cd507dba55909eccd0
MD5 hash: daef7b7d2b33530510ce481713c4a980
MIME type:application/x-dosexec
Signature StormKitty
Vendor Threat Intelligence
Result
Verdict:
Malicious
File Type:
PE File
Behaviour
BlacklistAPI detected
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
anti-debug anti-vm apt base64 blackenergy cmd crypto cscript evasive expand explorer fingerprint hacktool lolbin meterpreter microsoft_visual_cc mpcmdrun obfuscated overlay packed regsvr32 rundll32 runonce schtasks wscript wuauclt
Verdict:
inconclusive
YARA:
2 match(es)
Tags:
Executable PDB Path PE (Portable Executable) PE File Layout Zip Archive
Result
Malware family:
stormkitty
Score:
  10/10
Tags:
family:stormkitty stealer
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments