MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 edce45ace91b67e02ce28d4f3eddc655c464de409a096e5d23c64233b49e6992. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



HawkEye


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: edce45ace91b67e02ce28d4f3eddc655c464de409a096e5d23c64233b49e6992
SHA3-384 hash: f47561490ba7af85f17d191b7c6a19a41f4a25e75da591de072875edef7a13361fc0065f4c32dbcea952c94580c62888
SHA1 hash: c4e857495d25eb1afc5e1e692f44a332435fcc28
MD5 hash: 9ef7b5135d37bb010964193dba9c7e6c
humanhash: salami-london-north-finch
File name:Contract 0012190-doc.arj
Download: download sample
Signature HawkEye
File size:330'636 bytes
First seen:2020-06-15 05:37:41 UTC
Last seen:2020-06-15 15:16:09 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:LyzyWmYfgsofj3yAT+mMW9emLNnJSMASxSzHRE7R3L8mQD2Zaoz:OuWmYfgsob3yAT+/W3NIMDyRIR785D2P
TLSH FC642332A6F1DF60A193DFC0538058CCD650A9F270CC7D8D279D3617F86AD9C9BA4825
Reporter jarumlus
Tags:HawkEye

Intelligence


File Origin
# of uploads :
3
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Hacktool.Ymacco
Status:
Malicious
First seen:
2020-06-15 05:39:04 UTC
AV detection:
25 of 31 (80.65%)
Threat level:
  1/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

HawkEye

zip edce45ace91b67e02ce28d4f3eddc655c464de409a096e5d23c64233b49e6992

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments