🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f2cf11448b69c248425759b272f7cf2d9d95565e2dac219e08e4a469ca9086f0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



TrickBot


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: f2cf11448b69c248425759b272f7cf2d9d95565e2dac219e08e4a469ca9086f0
SHA3-384 hash: e34abb4ba83e97c5d86973ac2d95748daebe527404f4614e5166c74efb8a843fe7d7c60af5d807748b67097741dba215
SHA1 hash: 1d4b8305860d6eaba3747c0b4e5b9d131938f48c
MD5 hash: 9cadc5e7bea705966e8c7aba93171c51
humanhash: ack-network-emma-august
File name:dCurTable.hta
Download: download sample
Signature TrickBot
File size:2'854 bytes
First seen:2021-06-29 02:17:06 UTC
Last seen:Never
File type:HTML Application (hta) hta
MIME type:application/octet-stream
ssdeep 48:ixWNWo4XOsQQTP2aM/Kv/DdLgXaJKX1CTtY/fBziS5helQ91hkDPeEsF0Rxju2sc:rkTPGSDhgXaJGaQ/helG00KIc
TLSH B651D7CA6C166DAC0A576C123D7AC498EC44D4009764D8F6C5C47CC3BC26BE0AF96AF9
Reporter malware_traffic
Tags:hta Shathak TA551 TrickBot

Intelligence


File Origin
# of uploads :
1
# of downloads :
520
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Script.Trojan.Wacatac
Status:
Malicious
First seen:
2021-06-29 02:17:09 UTC
AV detection:
5 of 46 (10.87%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments