MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 462432376eddb58976b2e37d005fa536e8289e0f1224f0292b2fc748f6e70691. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RemcosRAT


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 462432376eddb58976b2e37d005fa536e8289e0f1224f0292b2fc748f6e70691
SHA3-384 hash: 2cebd843b7e6fa7fefd2a5dbe36c06449f850a587c7c784f17525c2286a39cd518684ce701674fa8187455e99f516a66
SHA1 hash: 331e548b01cbf10d3d531541a45ae181a87fc4c0
MD5 hash: 01e32eb635eb314bde9ed6625c859ec1
humanhash: uranus-music-sad-august
File name:RECEIPT-IMG303948485.zip
Download: download sample
Signature RemcosRAT
File size:597'968 bytes
First seen:2022-02-08 10:00:07 UTC
Last seen:2022-02-08 10:00:08 UTC
File type: zip
MIME type:application/zip
ssdeep 12288:573YAx8nj6a12OQUqr2OCdcONP3VxyJmrp2CKgG3WnXhoiTRd1YznShn:B3+B1eScOVFxuhCpGKJddujSR
TLSH T106D423A58E9DC03C8F9250D549182AD5E3F45206D1E264EA1CFDF06CE4A4B9C9DEF2F4
Reporter DFNCERT
Tags:RAT remcos zip


Avatar
DFNCERT
PASSWORD :20222

Intelligence


File Origin
# of uploads :
2
# of downloads :
155
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

  
Delivery method
Distributed via e-mail attachment

Comments