MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 041c469c1d878b7f3c846cb636b0709a87f19cabb42a5882b2f996197c536a57. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RedLineStealer


Vendor detections: 1


Intelligence 1 IOCs YARA File information Comments

SHA256 hash: 041c469c1d878b7f3c846cb636b0709a87f19cabb42a5882b2f996197c536a57
SHA3-384 hash: 242aaeedec2ada694f61c5bf0eb1ea0e596fd8d9bd174e360fdc6d4b1f94f5218f924b553468302a913d28df6f47a22d
SHA1 hash: e154c9358ab6e33afe5ac0c141e75f47d9f6e0bb
MD5 hash: e5a85b9d440256c137310f46b8233e61
humanhash: paris-autumn-angel-summer
File name:DavinciResolve17f.rar
Download: download sample
Signature RedLineStealer
File size:1'941'218 bytes
First seen:2022-03-14 20:55:26 UTC
Last seen:2022-04-20 10:18:08 UTC
File type: rar
MIME type:application/x-rar
ssdeep 24576:8BLe2ByRj0+xpwmgeuns/rda/TLqeXlsvKg4eD51h3/yzJz1Mk3l4FRqH91XMVeN:2ByBwmgPi+VsvKgt51eJz1MkcUc8jEg
TLSH T1F69533B6F404C8227244F5662FBE604159A7DC303DCE2D99A13B837F2D1B49E4DA6B4E
Reporter iam_py_test
Tags:explorer-hijack rar


Avatar
iam_py_test
The password is Davinci17
This file is from https://forums.malwarebytes.com/topic/284767-trojan-on-my-pc-please-help/

Intelligence


File Origin
# of uploads :
8
# of downloads :
284
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Result
Verdict:
UNKNOWN
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments