MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d6fbd423c62791d359d78d0662aa6529dcd369eea69cff79401d355da74f9928. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



NanoCore


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: d6fbd423c62791d359d78d0662aa6529dcd369eea69cff79401d355da74f9928
SHA3-384 hash: f8fb8e395989145203867855eec421143b724a782d0cd9d88ca8bcc273108d48f6acf89ec2b306703efb0e2b65336032
SHA1 hash: d1c3d3301decd6b90962bad6f645375b3da612f1
MD5 hash: 3b903ee71faaf7231f3d6f5e91c97e91
humanhash: lima-maine-don-juliet
File name:Swift-052520.z
Download: download sample
Signature NanoCore
File size:410'263 bytes
First seen:2020-05-25 09:33:43 UTC
Last seen:2020-05-25 09:53:26 UTC
File type: z
MIME type:application/x-rar
ssdeep 12288:SUx++iO58gbFn5WFEbH6YWz1G/IQ9jN4mzcTAt2b5d+vaT2yy6G:L+BOeKrW2cJGA4ZXbKQGltG
TLSH DC942370A8B02773B897DCF133C484AE89437B87D6709FE540355533642FE9CEA8899A
Reporter jarumlus
Tags:NanoCore

Intelligence


File Origin
# of uploads :
2
# of downloads :
63
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-25 09:36:18 UTC
File Type:
Binary (Archive)
Extracted files:
264
AV detection:
21 of 48 (43.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

NanoCore

z d6fbd423c62791d359d78d0662aa6529dcd369eea69cff79401d355da74f9928

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments