MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e352d6ea4da596abfdf51f617584611fc9321d5a6d1c22aff243aecdef8e7e55. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Lazarus


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: e352d6ea4da596abfdf51f617584611fc9321d5a6d1c22aff243aecdef8e7e55
SHA3-384 hash: 388f0c94a5c54d515e70d90406e2301aec7b2848067c44cbfc89e90c026b51a1b92d52bba120ed514f3bebf04cda063a
SHA1 hash: 8644da026f9e8873dd8699bd68c77a25001be726
MD5 hash: 6058368894f25b7bc8dd53d3a82d9146
humanhash: hamper-wolfram-equal-neptune
File name:6058368894f25b7bc8dd53d3a82d9146
Download: download sample
Signature Lazarus
File size:39'168 bytes
First seen:2021-02-18 01:21:15 UTC
Last seen:Never
File type:php macho
MIME type:application/x-mach-binary
ssdeep 384:TgSifNpZ0XMY923gMnldxdzd7tmEtP0lLnXjXZfV:TgTFp8EgMD9WXj
TLSH 2903F823F7081456D58880749AEF53438361F6A5EF86639F13D0E3587FA87A93256A07
Reporter c3rb3ru5d3d53c2
Tags:Lazarus

Intelligence


File Origin
# of uploads :
1
# of downloads :
143
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
MacOS.Trojan.NukeSped
Status:
Malicious
First seen:
2019-09-04 03:13:21 UTC
File Type:
MachO64 Little (Exe)
AV detection:
28 of 47 (59.57%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments