MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 4abbff8d3ab24b4daf1dda74369e769ef1c277adf9d73041ffbd0c186fe606bf. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
MassLogger
Vendor detections: 2
| SHA256 hash: | 4abbff8d3ab24b4daf1dda74369e769ef1c277adf9d73041ffbd0c186fe606bf |
|---|---|
| SHA3-384 hash: | ea10029673d36e224deea03d4fb1b766a40a6fb6cddff563d83d6a2d7a586f32c68b55adfa907e1544a4c44fba8059ea |
| SHA1 hash: | 6225820f6589378963e62290fe9996ae77bd282e |
| MD5 hash: | 5c7605319d631f2dd0e6ce3facb3eaac |
| humanhash: | august-helium-queen-iowa |
| File name: | Swift Email Bildirimi pdf.uu |
| Download: | download sample |
| Signature | MassLogger |
| File size: | 839'648 bytes |
| First seen: | 2020-10-19 07:24:32 UTC |
| Last seen: | Never |
| File type: | rar |
| MIME type: | application/x-rar |
| ssdeep | 24576:jhMYz9MDZ4ZAlI80WyrqJ5kWUOyVoPmjB94:FMEmiZKTc+J5WPoP3 |
| TLSH | 8F0523D4FE98869F33270A562F0393F452FBD393A26C54A9CB1C01A506255E379A233F |
| Reporter | |
| Tags: | MassLogger uu |
abuse_ch
Malspam distributing MassLogger:HELO: server.hostagen.com
Sending IP: 185.255.93.151
From: trust@al-tuwaijri.com
Subject: Bank transfer swift document
Attachment: Swift Email Bildirimi pdf.uu (contains "Swift Email Bildirimi pdf.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
104
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Malicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Legit
Score:
0.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Dropping
MassLogger
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.