MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d404c0a634cef0d32029286fde8efccb6dfe1809066bbec7ac32d42c5ce3bc04. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Lazarus


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: d404c0a634cef0d32029286fde8efccb6dfe1809066bbec7ac32d42c5ce3bc04
SHA3-384 hash: 02caf172935f217a71c94c8d47bad32bb224d8a302ebb6b6acd5efdfb7abb33ea481719a08eff6dac29fb6b01fb12bb6
SHA1 hash: 1e8a2f1f751e5a9931bca5710b4f304798d665dc
MD5 hash: 48ded52752de9f9b73c6bf9ae81cb429
humanhash: kansas-cold-music-idaho
File name:48ded52752de9f9b73c6bf9ae81cb429
Download: download sample
Signature Lazarus
File size:15'020'544 bytes
First seen:2021-02-18 01:18:59 UTC
Last seen:Never
File type:unknown
MIME type:application/octet-stream
ssdeep 393216:0naJ/9SL/uXRs1q5wxrCAveZZXFdklxkBSY6bzLZaM:bJ/9SLQRwqSrCAS5klxPY6bXZx
TLSH 80E63381ABE20B49E98F47FD10D50B835AF9AD9ED683E8090116F3115CB7F84FA63749
Reporter c3rb3ru5d3d53c2
Tags:Lazarus

Intelligence


File Origin
# of uploads :
1
# of downloads :
125
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
MacOS.Trojan.Lazarus
Status:
Malicious
First seen:
2018-08-27 06:54:46 UTC
File Type:
Binary
AV detection:
20 of 47 (42.55%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments