MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 427752b7a0e7180efe70b8704e7c8edcde27990d55b1cf962840e7a8246ef155. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



MassLogger


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 427752b7a0e7180efe70b8704e7c8edcde27990d55b1cf962840e7a8246ef155
SHA3-384 hash: e7faf1643a7f235e4fa7b80fcd9a0219bd5b6ba8d473b26499ba8e37c8a4e8de7364db255019df8228cbb9c8807dc985
SHA1 hash: b1cd53d24cc430b4a92df39df9e134d103462377
MD5 hash: ee639c5d015ec97ed07cd4c23dfb1b65
humanhash: maine-chicken-spaghetti-sixteen
File name:Halkbank,doc.r00
Download: download sample
Signature MassLogger
File size:1'109'494 bytes
First seen:2020-10-30 05:39:03 UTC
Last seen:2020-10-30 22:05:15 UTC
File type: r00
MIME type:application/x-rar
ssdeep 24576:3e7mLOqyVSA8cWCi8dgwWhKxMnzMiMGwz17c+LjBqtap9TF0Mww:u6uSRcDi8aFKSzMxtyo50Mww
TLSH 193533A38565ACDEA1A120FDAFD69CB877B439835D8B93F8038F54DC6C81D0D7910E68
Reporter GovCERT_CH

Intelligence


File Origin
# of uploads :
2
# of downloads :
82
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2020-10-30 01:50:11 UTC
AV detection:
4 of 48 (8.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

MassLogger

r00 427752b7a0e7180efe70b8704e7c8edcde27990d55b1cf962840e7a8246ef155

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments