MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bd0e15ae12a6930da29f28dd96f11785619b312a85c9276afffaabb8d07e7220. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry


Intelligence File information 1 Yara Comments

SHA256 hash: bd0e15ae12a6930da29f28dd96f11785619b312a85c9276afffaabb8d07e7220
SHA3-384 hash: ea6d20ae32dd38d8309569ae5c38e6acc7f5a3722cb084b05215f6395bf8ce7ef709f4bda5818dd2b48eeed86fd82fb9
SHA1 hash: e7f0b8edf59879d4cadc3e42d9ba690e46fee125
MD5 hash: 9429bb37fba01fe79305b216fcbf8445
humanhash: carpet-eleven-timing-vegan
File name:15577_611164_hisis.zip
Download: download sample
Signature n/a
File size:259'850 bytes
First seen:2020-06-30 07:41:37 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:glY3B90t2zqSAhLoouvfJnr9qllf7H25bb/JrFRE5P8Svcj7rHy:+5t2ONLoHZr9qllf72Zx05PVcry
TLSH 88442328BD51C8FD1C23C6154CAE68A5BF3EEFDFA12089851E376FD1AB581479A0039D
Reporter @jarumlus

Intelligence


Mail intelligence No data
# of uploads 1
# of downloads 31
Origin country US US
ClamAV SecuriteInfo.com.PUA.VBS-in-ZIP.UNOFFICIAL
CERT.PL MWDB Detection:n/a
Link: https://mwdb.cert.pl/sample/bd0e15ae12a6930da29f28dd96f11785619b312a85c9276afffaabb8d07e7220/
ReversingLabs :Status:Malicious
Threat name:Script-VBS.Trojan.Foretype
First seen:2020-06-30 07:43:04 UTC
AV detection:7 of 48 (14.58%)
Threat level:   5/5
VirusTotal:No data

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

zip bd0e15ae12a6930da29f28dd96f11785619b312a85c9276afffaabb8d07e7220

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments