MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ddfbccffbf9897fda437d33be78846eae012d7e60b718bd56feecbe1164b986a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry

Intelligence 1 File information 1 Yara Comments

SHA256 hash: ddfbccffbf9897fda437d33be78846eae012d7e60b718bd56feecbe1164b986a
SHA3-384 hash: a32752fa5c8edada367da601f8cd1cf011ae8e39e17738f7190621ca901070f42758aee4b9ecc5e3ecd396253c190a8b
SHA1 hash: 541849a47025dfb95c64af6ba3fa59874425ac77
MD5 hash: b31c75b7dc8ed2f98a9aab9aaddbcbbd
humanhash: hamper-red-uniform-alpha
Download: download sample
Signature n/a
File size:780 bytes
First seen:2020-06-30 13:19:32 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12:5SQ1zYd7VsmEllnbovef+3GQpc074Q5/DZ3oIM4EcSTXYujJywQ5Bn8txNG0KGGa:frzllnMvL4QtZ30fcSznLQktxNG0Kapv
TLSH C201BD3D031ED6D5F286D972D09898868CE6D5A42225F24E52DFCD907A00B926A4CB5E
Reporter @jarumlus


Mail intelligence
Trap location Impact
CH Switzerland Low
Global Low
# of uploads 1
# of downloads 28
Origin country FR FR
ClamAV Sanesecurity.Malware.27358.ScrHeur.Avicii.UNOFFICIAL
CERT.PL MWDB Detection:n/a
ReversingLabs :Status:Malicious
Threat name:Script-JS.Trojan.Bitsadmin
First seen:2020-06-30 13:21:05 UTC
AV detection:26 of 48 (54.17%)
Threat level:   2/5
VirusTotal:No data

File information

The table below shows additional information about this malware sample such as delivery method and external references.


zip ddfbccffbf9897fda437d33be78846eae012d7e60b718bd56feecbe1164b986a

(this sample)

Delivery method
Distributed via e-mail attachment