MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cc215c8ba2691906ef9f22a4f57ce82ff457a2a7fb85bc0d035f769a2aa16b42. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Kutaki


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: cc215c8ba2691906ef9f22a4f57ce82ff457a2a7fb85bc0d035f769a2aa16b42
SHA3-384 hash: 6c31a9267509512abbb90827fbae314eb7c461900994d822383030a493119bd18d87522aeeba49dd02f77133cc6bc311
SHA1 hash: 5b7bded16693de8996494ac42b2250516ccacf25
MD5 hash: a93460d23b0d98c1c3b4290f7625b9af
humanhash: video-red-jersey-batman
File name:SHRIKESH_CHALLAN.zip
Download: download sample
Signature Kutaki
File size:375'345 bytes
First seen:2020-08-05 07:53:40 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:/IjnBp/nmFyok+ZMUv1a4GlA9jQHr/VCS03hwjlMRkwuJQMS8y+lquHTonIrYH5:Q3PQk+Zo4YA9jQL/WhqpOMS88Gkn/Z
TLSH EA8423A4078A8F1A7CDE7C3AE7B3F82B038519F71795254819CA7273C046A43F25D91B
Reporter abuse_ch
Tags:Kutaki zip


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: slot0.aero-cabln.com
Sending IP: 192.119.86.103
From: info@aero-cabln.com
Subject: Transfered an amount of Rs.12,08,194
Attachment: SHRIKESH_CHALLAN.zip (contains "SHRIKESH_CHALLAN.cmd")

Intelligence


File Origin
# of uploads :
1
# of downloads :
73
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Spyware.Kutaki
Status:
Malicious
First seen:
2020-08-05 07:55:06 UTC
AV detection:
24 of 29 (82.76%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Kutaki

zip cc215c8ba2691906ef9f22a4f57ce82ff457a2a7fb85bc0d035f769a2aa16b42

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments