MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b30a215a2d9c492ec94f6da67af440908c8a8c2239a37bbc1204538341823d88. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: b30a215a2d9c492ec94f6da67af440908c8a8c2239a37bbc1204538341823d88
SHA3-384 hash: a1e3f838f5264c322e164b0e33f8d5ce247e1b617b2a00dbd63e0c3eb2a2a98904f707b42aaabb08d7617073571bbcc3
SHA1 hash: eefa04063a2d69ee4d57ff3969b241eccdf9fdeb
MD5 hash: 8517c99744b43646ba22f7452a140097
humanhash: berlin-beer-william-pizza
File name:SecuriteInfo.com.Win32.Kryptik.HDSY.21583
Download: download sample
File size:326'656 bytes
First seen:2020-06-01 22:28:36 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash 31eda527c6d153109d35dd9b72c3b720 (1 x FormBook)
ssdeep 3072:IMq8JVHu5be+V/U3VznjTLrEtcozBEf+cl6P/TSQFHEMJPCl47Pa:I/kVVU/6vLEHzEnY5JPJz
Threatray 5'313 similar samples on MalwareBazaar
TLSH 1864E068939C1CEEF807C5BC0466C571DCED2D622DB57ACB26C8B650AD3319309BE71A
Reporter SecuriteInfoCom

Intelligence


File Origin
# of uploads :
1
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Kryptik
Status:
Malicious
First seen:
2020-06-01 16:49:52 UTC
File Type:
PE (Exe)
Extracted files:
7
AV detection:
24 of 31 (77.42%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Suspicious behavior: EnumeratesProcesses
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Executable exe b30a215a2d9c492ec94f6da67af440908c8a8c2239a37bbc1204538341823d88

(this sample)

  
Delivery method
Distributed via web download

Comments