MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4464f85e92b417a3ac8cd3a4578cc4557f9cf9df36240052605dba93a4968571. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



MassLogger


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 4464f85e92b417a3ac8cd3a4578cc4557f9cf9df36240052605dba93a4968571
SHA3-384 hash: d7b2a1cae62e2c6ffe878b4b0f171f9852989d3de5e459a0a666b354472e3e971aff941d49c65c7282e2590907afa2dc
SHA1 hash: 10b821f502ac01ccfffe07a8afe413ca7ce99c66
MD5 hash: 5269cebe4f267fbd1f0def6870b8f3fc
humanhash: berlin-butter-maryland-spring
File name:Company Info.CAB
Download: download sample
Signature MassLogger
File size:870'857 bytes
First seen:2020-07-07 08:59:03 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:HH415Z+XdDHHU6O2l9B7v/lrJjDyhWGUHBVwJfq1hkC:43ZmhH06/7prJ/yhWjhV5mC
TLSH 350533CEE6F08473DB325C9B1E7C804EF0D79C9442A775607470E0A9F96A4AE6589E0D
Reporter abuse_ch
Tags:cab MassLogger


Avatar
abuse_ch
Malspam distributing MassLogger:

HELO: slot0.ferrydo.xyz
Sending IP: 104.168.245.66
From: contact@macsontrading.com
Subject: INQUIRY FROM MASON LLC (JULY 2020)
Attachment: Company Info.CAB (contains "Company Info.exe")

MassLogger SMTP exfil server:
smtp.yandex.com:587

Intelligence


File Origin
# of uploads :
1
# of downloads :
73
Origin country :
n/a
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

MassLogger

zip 4464f85e92b417a3ac8cd3a4578cc4557f9cf9df36240052605dba93a4968571

(this sample)

  
Dropping
MassLogger
  
Delivery method
Distributed via e-mail attachment

Comments