MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cd9421c332a2b90b26152f0e85a7db621306cd1daa70f30af3210895d2aeb577. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Kimsuky


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: cd9421c332a2b90b26152f0e85a7db621306cd1daa70f30af3210895d2aeb577
SHA3-384 hash: 319b16e1699db39d7bf54fdb57d287885e76834cae8fc339a6c9d98fab6f86af9a336e36adfe5b8aa6cdd8f784d1ee2d
SHA1 hash: 64f8b386000ed34f7b9f22a8144328d0e61ed31c
MD5 hash: 6d6399e5e98164e365029a9b141e1646
humanhash: network-michigan-undress-washington
File name:인터뷰질문지-최은율(한국어).pdf
Download: download sample
Signature Kimsuky
File size:509'814 bytes
First seen:2021-08-06 10:43:22 UTC
Last seen:Never
File type: pdf
MIME type:application/pdf
ssdeep 12288:VpibeEe4ptxOrPocv7P/UUgSMvFhaIbVMZxIHPbB0:jDEe4ptxeoGj/oLtMCMZxIHPbO
TLSH T195B4235ED86C3C98ECBB133599A678528771709B82C50672B43C0D838F4EE583E675BE
Reporter JAMESWT_WT
Tags:apt Kimsuky pdf

Intelligence


File Origin
# of uploads :
1
# of downloads :
797
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Document-PDF.Trojan.Pidief
Status:
Malicious
First seen:
2021-08-06 10:41:58 UTC
File Type:
Document
Extracted files:
21
AV detection:
11 of 27 (40.74%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments