MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 fbab77a9399461b71d65d586ad2aac134941f7fac37e5e607822749a627b3937. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: fbab77a9399461b71d65d586ad2aac134941f7fac37e5e607822749a627b3937
SHA3-384 hash: 0d39a902030aa8cf046a68becae16c7e201baa81b73bc293ef739e136c2330f092667de55114cc8bedfb8251745afcb1
SHA1 hash: d6383962c65ef32069f644e476c85d3cc4221cb9
MD5 hash: 1e4a7139b19c012e87ad2e4b8919d1f5
humanhash: william-beer-massachusetts-oklahoma
File name:PO 1278893.xla
Download: download sample
File size:22'016 bytes
First seen:2020-09-03 12:01:40 UTC
Last seen:2020-09-03 12:42:42 UTC
File type:unknown
MIME type:application/vnd.ms-excel
ssdeep 384:+nCTwe1k3hOdsylLOlyvryzc4JJNhZFGzETqcLrKkzr+sniSV0UO7E3C2OlPrdyS:+Crk3hOdsylKlgryzc4bNhZFGzE+cL2v
TLSH 8BA283E7B2D6EC05DD4A073548A79391672AFC156FA3930B7359F31A0F71AC08A03A17
Reporter JAMESWT_WT

Intelligence


File Origin
# of uploads :
2
# of downloads :
77
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Script-Macro.Downloader.Donoff
Status:
Malicious
First seen:
2020-09-02 10:25:58 UTC
File Type:
Document
Extracted files:
17
AV detection:
18 of 29 (62.07%)
Threat level:
  3/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments