MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 db3863c988e1574a72db282661b0cbb59d84c12396653581914e15d2d0df5695. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



HawkEye


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: db3863c988e1574a72db282661b0cbb59d84c12396653581914e15d2d0df5695
SHA3-384 hash: 1b945754934c574e36ccdbf2dcc4c59a6066cb14272248c0fda0e3cdb211b406d547b32d399d4f516e1147cf00408852
SHA1 hash: a3ddb3af02c2df247ca53f88e946f03d2af11f38
MD5 hash: 331e6bb599d84405f46fa2991d522076
humanhash: eleven-arizona-romeo-steak
File name:Order Specifications.zip
Download: download sample
Signature HawkEye
File size:909'197 bytes
First seen:2020-10-16 03:50:53 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:rTd+qYbSU5R0QNgxiypBvF3JtwgPzuZk58rMVq/VQ:rh+Fb15bWTzF3JWgbb5AMVq/O
TLSH 5C1533ED3470137153EFE1EEFEA304FAA2C5E900954422AA4773190AB749C1A5BD4BBD
Reporter GovCERT_CH
Tags:HawkEye

Intelligence


File Origin
# of uploads :
1
# of downloads :
81
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-10-16 03:52:08 UTC
AV detection:
10 of 48 (20.83%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

HawkEye

zip db3863c988e1574a72db282661b0cbb59d84c12396653581914e15d2d0df5695

(this sample)

  
Dropped by
HawkEye
  
Delivery method
Distributed via e-mail attachment

Comments