MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 05bd182048dcc2fa83657555055a1240a52683f740e515b0d839a594ee50dd65. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



ZeuS


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 05bd182048dcc2fa83657555055a1240a52683f740e515b0d839a594ee50dd65
SHA3-384 hash: e64df32f1cf590b1fc357e89f5e245b0990372f90a90e13eacc400566ee97ca1141503664bbad7b06c8144372cc7d094
SHA1 hash: e0db00d0e6277b608c48f0927f553483a69fb8d2
MD5 hash: 23e8d3044ad6698e572599c4938b072a
humanhash: connecticut-snake-winter-summer
File name:05bd182048dcc2fa83657555055a1240a52683f740e515b0d839a594ee50dd65
Download: download sample
Signature ZeuS
File size:158'720 bytes
First seen:2020-08-23 21:52:06 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash f8af2dc5bc3962c7feca46a4aafb0ee1 (1 x ZeuS)
ssdeep 3072:6lCK955lOZQBORovsqz1nwaeu48IeVA2t41:c955lbORgsqZwo48IeVA91
Threatray 112 similar samples on MalwareBazaar
TLSH 66F3F17B8411A71AD43F9E77112A1C65F21797028327A0CBE2A83D7A7F4DD4F2876362
Reporter tildedennis
Tags:iceix ZeuS


Avatar
tildedennis
iceix version 1.2.6.3

Intelligence


File Origin
# of uploads :
1
# of downloads :
1'708
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Sending a UDP request
Result
Threat name:
Detection:
malicious
Classification:
bank.troj.evad
Score:
80 / 100
Signature
Antivirus / Scanner detection for submitted sample
Contains VNC / remote desktop functionality (version string found)
Detected unpacking (changes PE section rights)
Detected unpacking (overwrites its own PE header)
Detected ZeusVM e-Banking Trojan
Machine Learning detection for sample
Behaviour
Behavior Graph:
Threat name:
Win32.Trojan.Zeus
Status:
Malicious
First seen:
2012-04-24 07:01:00 UTC
AV detection:
28 of 29 (96.55%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments