MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0cf542852fcec699b8c6be230e5b38daa7380479cace60f2a6d3a3fcd357b718. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RedLineStealer


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 0cf542852fcec699b8c6be230e5b38daa7380479cace60f2a6d3a3fcd357b718
SHA3-384 hash: 3f7c3f545accd4735b81254000aff5663862c5f97d26d6cbae996115d7c4e8f4800805a68086ae67eec4414f848c1393
SHA1 hash: a87d157a9bc6a4738a44891ee135aaaf8f6fd342
MD5 hash: 1294bb023f92913629b36c72641d0eb1
humanhash: magnesium-glucose-lactose-alabama
File name:Cthulhu_World_Launcher_0.7.7(betа).zip
Download: download sample
Signature RedLineStealer
File size:27'622'551 bytes
First seen:2022-08-25 15:24:50 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 786432:ZxtJH6xnTVnLNYyXX5zq9GmvomkEEdAoUw:3tJaXnRXXtEGmwn2or
TLSH T1A35733AC4B4009D7E497927428FC06A75759A00A5713FA2E0C921FDDFC7D8AE3B6C6C9
TrID 80.0% (.ZIP) ZIP compressed archive (4000/1)
20.0% (.PG/BIN) PrintFox/Pagefox bitmap (640x800) (1000/1)
Reporter iamdeadlyz
Tags:CthulhuW075 CthulhuWorld exe FakeAlchemicWorld RedLineStealer zip


Avatar
Iamdeadlyz
Password: CthulhuW075
C&C: 77.73.134[.]5:30812

Intelligence


File Origin
# of uploads :
1
# of downloads :
423
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Gathering data
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

RedLineStealer

zip 0cf542852fcec699b8c6be230e5b38daa7380479cace60f2a6d3a3fcd357b718

(this sample)

  
Delivery method
Distributed via web download

Comments