🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bf4db025fc7e84f3d9f5c4654cf215410d9e4cd20694950a1512e967a28bd9fa. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



TrickBot


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: bf4db025fc7e84f3d9f5c4654cf215410d9e4cd20694950a1512e967a28bd9fa
SHA3-384 hash: 6bf94d39f4773aea3fde8565e200682ebf5f7ec5e52a3ba77f263b04828ad3a53ae141425ebf7ab8ae4f0099895075d8
SHA1 hash: 6f50461b871b88a94c8271c8fdb025aa1b595b4a
MD5 hash: ff9fd8caa6576f11e9d41dc70b5d01b3
humanhash: montana-island-ack-march
File name:objectVarQuery.hta
Download: download sample
Signature TrickBot
File size:3'046 bytes
First seen:2021-06-29 02:17:36 UTC
Last seen:Never
File type:HTML Application (hta) hta
MIME type:application/octet-stream
ssdeep 48:a+m+j14F2PhGDlZCxlQ/ZJaOAKmZwX1CTtF1Bo/eIfKVr39S8S/CAoe6OmUDSRPG:S+J4FyhG5osZJat3Wla//kKVrtDAhGDc
TLSH D851A8CD2D319E5C0B660622793BE55C9C2444109352EC68C5CCEAC3E8527FC9F777A9
Reporter malware_traffic
Tags:hta Shathak TA551 TrickBot

Intelligence


File Origin
# of uploads :
1
# of downloads :
523
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Script.Trojan.Generic
Status:
Suspicious
First seen:
2021-06-29 02:18:13 UTC
AV detection:
4 of 46 (8.70%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments