MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ab6c63634aafcf50d93ab8f2d53e93727bb3e8450b6631b52d74ef5d86e92811. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry

Intelligence File information 2 Yara Comments

SHA256 hash: ab6c63634aafcf50d93ab8f2d53e93727bb3e8450b6631b52d74ef5d86e92811
SHA3-384 hash: 86f106edb560542cf97f40212c9ddebb6258ff4456153b5758796a05800e9139e595a108c2dbed992a9598f150f4de45
SHA1 hash: f03734c2bcafbfe998b52f68e64b007420c1cb26
MD5 hash: bce555e1e4c448c7695961e511567833
humanhash: rugby-oklahoma-mirror-rugby
File name:P.O_310006132800154200.7z
Download: download sample
Signature n/a
File size:384'124 bytes
First seen:2020-06-30 07:13:18 UTC
Last seen:Never
File type: 7z
MIME type:application/x-rar
ssdeep 6144:iaDbMSD2bHMQemn+6FIdNgkDRjxfZS/vtgfow4rp4VtKTIW+ogjcKfkfJlGApgsn:ihowumnEukDxJZmt894EtKz3KPfkzGAp
TLSH 0F8423CEB8D9F6241119F4F97D650FA0E966E05618BED9C2A69E3090393C26F03C427F


Mail intelligence No data
# of uploads 1
# of downloads 31
Origin country IT IT
ClamAV No detection
CERT.PL MWDB Detection:n/a
ReversingLabs :Status:Malicious
Threat name:ByteCode-MSIL.Trojan.Kryptik
First seen:2020-06-30 07:15:05 UTC
AV detection:19 of 48 (39.58%)
Threat level:   2/5
VirusTotal:Virustotal results 8.20%

File information

The table below shows additional information about this malware sample such as delivery method and external references.

Web download

7z ab6c63634aafcf50d93ab8f2d53e93727bb3e8450b6631b52d74ef5d86e92811

(this sample)

Delivery method
Distributed via web download