MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3d007a16f50435b7e246503634c53f46388f4e01259be1c449b3cdfd0c24600f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RaccoonStealer


Vendor detections: 7


Intelligence 7 IOCs YARA File information Comments

SHA256 hash: 3d007a16f50435b7e246503634c53f46388f4e01259be1c449b3cdfd0c24600f
SHA3-384 hash: 8ea778ea0d507305835256e0b95f188ab887bcaffe88be3692660b13fb00bfcfa8d7d9ef9d46c4765aa44148faac66eb
SHA1 hash: b87f3183f7e571a9d95d2381fe3748734e09fbbb
MD5 hash: 5a368e49aa6ceacf8aa82f6764fecc1a
humanhash: carpet-florida-india-mississippi
File name:3d007a16f50435b7e246503634c53f46388f4e01259be1c449b3cdfd0c24600f
Download: download sample
Signature RaccoonStealer
File size:412'672 bytes
First seen:2020-11-15 22:40:38 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash cb831338d78206257b25bde73295c77f (16 x RaccoonStealer)
ssdeep 12288:FVTmnN973qqrcHfuYh2vW2PNaMLt2epKAQW0uS9:FZgRrcWHn/sephQDuS9
TLSH 989412F27693E071C4C64070B85EEF402EBB503967B085DB7BBA098EBF616D0C665B16
Reporter seifreed
Tags:RaccoonStealer

Intelligence


File Origin
# of uploads :
1
# of downloads :
59
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
Malware
Maliciousness:

Behaviour
Sending a UDP request
DNS request
Sending a custom TCP request
Sending a TCP request to an infection source
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Threat name:
Win32.Trojan.MintTitirez
Status:
Malicious
First seen:
2020-11-15 22:41:31 UTC
AV detection:
25 of 28 (89.29%)
Threat level:
  5/5
Result
Malware family:
raccoon
Score:
  10/10
Tags:
family:raccoon stealer
Behaviour
Modifies system certificate store
Raccoon
Unpacked files
SH256 hash:
3d007a16f50435b7e246503634c53f46388f4e01259be1c449b3cdfd0c24600f
MD5 hash:
5a368e49aa6ceacf8aa82f6764fecc1a
SHA1 hash:
b87f3183f7e571a9d95d2381fe3748734e09fbbb
SH256 hash:
b8f6b10d698cedd7a4a95a6f4378a64e19d78bc5ece6ce9e6df9e748eecd7877
MD5 hash:
df14eb6d184b6965479e4a5d110d1fed
SHA1 hash:
c4a5da49a64d59ade358f696c78120d48461723d
Detections:
win_raccoon_a0 win_raccoon_auto
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Other

Comments