MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 13a01ab49ce46ef8c0b777be39442175acb0c2ff43f18430549a9927c991885b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RemcosRAT


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 13a01ab49ce46ef8c0b777be39442175acb0c2ff43f18430549a9927c991885b
SHA3-384 hash: 8e62785becb6695388a85c7d7b85fcbb1041a42cfd7d811c20c08a36954a4599bbe813d6381e989b272230fbac64a7e6
SHA1 hash: 71097d14e91a4a82f2559932bd1f4aa77326ea6b
MD5 hash: 2964f55c3286b818da2f336f52dcca73
humanhash: whiskey-nebraska-coffee-xray
File name:Scan.ace
Download: download sample
Signature RemcosRAT
File size:143'914 bytes
First seen:2020-06-08 08:32:18 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 3072:6HKyibmCvEc9/xEs5V67+gsuP0oHLT13QO/M6SQzYDaHYt4585:KKyibmC8W/xzLu0or9DJqaHYt4C
TLSH EBE322EDCA9BFAF91732AD8D76E4955316F27C622322143A058BB4B15D046FBC6C0C8C
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
63
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Wacatac
Status:
Malicious
First seen:
2020-06-08 08:34:05 UTC
AV detection:
16 of 48 (33.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

RemcosRAT

ace 13a01ab49ce46ef8c0b777be39442175acb0c2ff43f18430549a9927c991885b

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments