MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 1948ebd975715205211e0e61520c37250868f8cff4977b9978648c65ee7494dd. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 1948ebd975715205211e0e61520c37250868f8cff4977b9978648c65ee7494dd
SHA3-384 hash: b2ae0bd30e0699a61b385d964f5e5e10009f249418ee3340aa15f80f8ec39b5ecd815b2a6b919a30715f90be63499506
SHA1 hash: 48ecf125c6d996599a8adf2c826a083e212e0e77
MD5 hash: bc3e83a047ffa7c905f38c146542f2f9
humanhash: december-burger-summer-chicken
File name:RIMESSA_CASSEGNI16032023-2900.pdf
Download: download sample
Signature Gozi
File size:25'032 bytes
First seen:2023-03-16 09:14:32 UTC
Last seen:Never
File type: pdf
MIME type:application/pdf
ssdeep 768:hgMRyuzcyTgJb+5B2VVmaHsviiv9VXquAN07wFFg:mMRNzG+5sUaHsviS3aaWq
TLSH T158B2CF6C5978D84DC44547341A2F371EABC8F56142E56CDE04B8E2A0B04BDBB7949A3F
Reporter JAMESWT_WT
Tags:GLS Gozi ITA Loader pdf Ursnif

Intelligence


File Origin
# of uploads :
1
# of downloads :
345
Origin country :
IT IT
Vendor Threat Intelligence
Label:
Benign
Suspicious Score:
1.6/10
Score Malicious:
16%
Score Benign:
84%
Result
Verdict:
UNKNOWN
Details
Document With Few Pages
Document contains between one and three pages of content. Most malicious documents are sparse in page count.
Result
Threat name:
Unknown
Detection:
clean
Classification:
n/a
Score:
0 / 100
Behaviour
Behavior Graph:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments