MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 d3777791e40060f00f6b986715e935ab42a352b8bba3a0289a118d5824980602. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 4
| SHA256 hash: | d3777791e40060f00f6b986715e935ab42a352b8bba3a0289a118d5824980602 |
|---|---|
| SHA3-384 hash: | ab34ff2c6dd149a943ba2bd043882a3b01bc2009c63fcaac6c2a27a640d03a818da5446dac2af6747ff02234a59b2fbc |
| SHA1 hash: | b8b71fa037d0af4735cc3aa0f5542a6431befaec |
| MD5 hash: | 6dc6ea002b4df1a49e76c7236c1c7c96 |
| humanhash: | early-wolfram-nine-undress |
| File name: | UNIQOM 10082020 INV+PKL_pdf.zip |
| Download: | download sample |
| File size: | 614'734 bytes |
| First seen: | 2020-10-14 15:04:03 UTC |
| Last seen: | Never |
| File type: | zip |
| MIME type: | application/zip |
| ssdeep | 12288:+ltC1rSKvgryCYY0DbLe646dlmcT7F4be0462rCAX/B1cXXwQ84wJMkumdcr1DMU:+tEzjCY9Dx46TqUMEAAQ8BaSchA4MLQR |
| TLSH | 8ED423BF95A15BA3174312187DF3F3CC54F040846AB8862E6DD2564EBA7390784B2DAF |
| Reporter | |
| Tags: | zip |
abuse_ch
Malspam distributing unidentified malware:HELO: uniqom.ru
Sending IP: 45.137.22.72
From: Шокурова Юлия <j.shokurova@uniqom.ru>
Subject: RE: Oriental Star Chemical INC
Attachment: UNIQOM 10082020 INV+PKL_pdf.zip (contains "UNIQOM 10082020 INV+PKL_pdf.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
58
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-10-13 20:30:10 UTC
AV detection:
9 of 48 (18.75%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Trojan
Score:
1.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
zip d3777791e40060f00f6b986715e935ab42a352b8bba3a0289a118d5824980602
(this sample)
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.