MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 e9f8f00997f3a67cf91c0a9aeb2b0fdedadab243fb75d30f6ae69c7b1dcbb7d0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Threat unknown
Vendor detections: 2
| SHA256 hash: | e9f8f00997f3a67cf91c0a9aeb2b0fdedadab243fb75d30f6ae69c7b1dcbb7d0 |
|---|---|
| SHA3-384 hash: | d48d6c7b798543b2c20c5359313f7fcb6c270107fd2cec4e39fdb4cf69ecfed70368081ca91f04f86f66614f40c9b644 |
| SHA1 hash: | 82659281b62940fd3ce39a0a5fe97d95e32c5139 |
| MD5 hash: | a396dcde8e105794bd95723ab42c8394 |
| humanhash: | green-indigo-oklahoma-ten |
| File name: | b |
| Download: | download sample |
| File size: | 2'298 bytes |
| First seen: | 2026-09-23 18:08:50 UTC |
| Last seen: | Never |
| File type: | |
| MIME type: | text/plain |
| ssdeep | 48:b/Cfdu0duvu/fuPu6uBu4umFuuPiuvurununuEuxuwuSudJ23idudG8dza:xbWe2b4xmkurWquuFIpzdJ2SEM89a |
| TLSH | T1F7415E8E314144A2C07531B4374E0E82A38AA76B5A5BFFF1A0D17968BC1BDA193777C5 |
| Magika | batch |
| Reporter | |
| Tags: | Kongtuke ps1 |
monitorsg
hXXps://gerlace[.]com/leagek2u.js (ClickFucker) --> hXXps://gerlace[.]com/api/v1/8e4c615 (token) --> hXXps://gerlace[.]com/api/v1/f659473 (gateway) --> hXXps://gerlace[.]com/api/v1/e81929c (clipboard) --> hXXps://appkey5484[.]com/b (cmd)Intelligence
File Origin
USVendor Threat Intelligence
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Web download
ps1 e9f8f00997f3a67cf91c0a9aeb2b0fdedadab243fb75d30f6ae69c7b1dcbb7d0
(this sample)
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.