MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 45b026d5c1d558da8885aa47b50444f9841032644171f9a5e449038f97d06fc7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
SnakeKeylogger
Vendor detections: 5
| SHA256 hash: | 45b026d5c1d558da8885aa47b50444f9841032644171f9a5e449038f97d06fc7 |
|---|---|
| SHA3-384 hash: | 64e49ffc81308596a368ef3f242cb11400ff3cac4c2fdebab6a6f477fc2bd539fd5f2e5b7d73b352fb6d883d8fd758b2 |
| SHA1 hash: | 201a6a33bb52724e2c736f82de323f8b2ca2b3b7 |
| MD5 hash: | fb50c40a28c3bfeef88d80b957fca112 |
| humanhash: | mockingbird-vermont-pennsylvania-solar |
| File name: | INVITATION TO TENDER NO MAT 021 PJTS 021 FOR THE PROVISION OF SUPPLY Instrument Bulk Material(1).mds.img |
| Download: | download sample |
| Signature | SnakeKeylogger |
| File size: | 1'441'792 bytes |
| First seen: | 2021-07-08 05:41:38 UTC |
| Last seen: | 2021-07-08 09:36:30 UTC |
| File type: | img |
| MIME type: | application/x-iso9660-image |
| ssdeep | 12288:8fqS6NsBaJIGFJ/wZy6nYpfAqo/s9ClF0MCub4Bq2tcMEz7HHzrK0HkK3dw:7S6N7B/wZy6h/sg30VmAq2tQvHz0KC |
| TLSH | T1A1657C7E60F29BE1FDAFC63C2FB1761C2FA9AA76914B7E742C4974450080B150A7192F |
| Reporter | |
| Tags: | img SnakeKeylogger |
cocaman
Malicious email (T1566.001)From: "Mohamed , Eldaly <m.eldaly@petrozenima.com.eg>" (likely spoofed)
Received: "from petrozenima.com.eg (unknown [77.247.110.77]) "
Date: "8 Jul 2021 10:58:54 +0200"
Subject: "INVITATION TO TENDER NO MAT. 021/PJTS/2021 FOR THE PROVISION OF SUPPLY Instrument Bulk Material"
Attachment: "INVITATION TO TENDER NO MAT 021 PJTS 021 FOR THE PROVISION OF SUPPLY Instrument Bulk Material(1).mds.img"
Intelligence
File Origin
# of uploads :
2
# of downloads :
110
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.Generic
Status:
Suspicious
First seen:
2021-07-08 01:47:05 UTC
File Type:
Binary (Archive)
Extracted files:
25
AV detection:
8 of 46 (17.39%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Suspicious File
Score:
0.51
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.