🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 50c2bf8a73971aadf4896eff794c9baf7ea4e1eb9372621e1119cd155dc8afb3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



IcedID


Vendor detections: 2


Intelligence 2 IOCs 1 YARA File information Comments

SHA256 hash: 50c2bf8a73971aadf4896eff794c9baf7ea4e1eb9372621e1119cd155dc8afb3
SHA3-384 hash: 11f6d82e1290040742e02890d4e230268cfa5af36bbc5445a7a7d525962df72bb39b5769d6a121ae2940f296c2c1a5f5
SHA1 hash: c88a9b029b690939ec81185680c9d0b82033b7e5
MD5 hash: 15ac7d0c7abe6caa5649ba961d016ff1
humanhash: white-victor-fourteen-happy
File name:Scan_Invoice_12-09#15.zip
Download: download sample
Signature IcedID
File size:439'616 bytes
First seen:2022-12-10 05:13:43 UTC
Last seen:Never
File type: zip
MIME type:application/zip
Note:This file is a password protected archive. The password is: u753
ssdeep 12288:aDRB47bW+JhChk9lBHv1PQL+Unh68J+NRmvg3O:G49CClBHv1oLoyh
TLSH T1A2942376D41A660FDE08B387FB70CC5908DE9E0593B6B63078A99A35BA3074509FB709
TrID 80.0% (.ZIP) ZIP compressed archive (4000/1)
20.0% (.PG/BIN) PrintFox/Pagefox bitmap (640x800) (1000/1)
Reporter malware_traffic
Tags:BokBot broskabrwaf.com IcedID password: u753 zip

Indicators Of Compromise (IOCs)


Below is a list of indicators of compromise (IOCs) associated with this malware samples.

IOCThreatFox Reference
broskabrwaf.com https://threatfox.abuse.ch/ioc/1033907/

Intelligence


File Origin
# of uploads :
1
# of downloads :
146
Origin country :
US US
File Archive Information

This file archive contains 1 file(s), sorted by their relevance:

File name:Scan_Invoice_12-09#15.msi
File size:843'776 bytes
SHA256 hash: 01fcaac089adb57be61812b11860fb264cad44b7e3a60b3519ff964a9f459b73
MD5 hash: e434a4494661f2e8a5b74332c6630b67
MIME type:application/x-msi
Signature IcedID
Vendor Threat Intelligence
Gathering data
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments