MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 4cb65acf835d84fa4c834b2b12ca8734f0db593c47f0e9d69ce7172900bfaf55. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
MassLogger
Vendor detections: 3
| SHA256 hash: | 4cb65acf835d84fa4c834b2b12ca8734f0db593c47f0e9d69ce7172900bfaf55 |
|---|---|
| SHA3-384 hash: | 4acc6eab7ef0012fb146c4c06d0be6827c6345d39d8c9ad0751c902c7049d61d5392ea073a325ffef0f4015e4ed8bca7 |
| SHA1 hash: | 50dde78e2cdf2d429f9f14f3782937c684bf7ae9 |
| MD5 hash: | c518464f06e70676cae6c2b42515276d |
| humanhash: | south-shade-single-ack |
| File name: | 2020-10-19....rar |
| Download: | download sample |
| Signature | MassLogger |
| File size: | 974'733 bytes |
| First seen: | 2020-10-20 06:14:55 UTC |
| Last seen: | Never |
| File type: | rar |
| MIME type: | application/x-rar |
| ssdeep | 12288:5uhrEWbvOJnBNx2pWCAb6wS+g0pEnE/8noKl9y3upv4aYLUrlAC4G45wjVmLCRlj:5QrD6nIYHSvE0no69y+pv4aeG1B7lHCy |
| TLSH | BC2533833828E1DDA76512FDD9100891FF3B771ACE8A2B5CA824650077ED5988FF7B24 |
| Reporter | |
| Tags: | GarantiBBVA geo MassLogger rar TUR |
abuse_ch
Malspam distributing unidentified malware:HELO: m1mkyc5j.ni.net.tr
Sending IP: 89.252.168.52
From: Garanti BBVA Emeklilik <OtomatikBES@garantibbvaemeklilik.com.tr>
Reply-To: noreply <mintchin1@gmail.com>
Subject: Otomatik BES İşlemleri Son Aşama - Ödeme Dosyanızı Yükleyin
Attachment: 2020-10-19....rar (contains "s9gPsAfxEpCcR3f.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
86
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-10-19 18:39:05 UTC
AV detection:
5 of 48 (10.42%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Legit
Score:
0.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.