🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 59f866b9db3a1f39a341bc274f2c2feacc2bbfe7eaaf9acab5e594db1c2f4ec3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 59f866b9db3a1f39a341bc274f2c2feacc2bbfe7eaaf9acab5e594db1c2f4ec3
SHA3-384 hash: b51132ba4d2185646b86392695b8f51906d0f5be9201ab93eb0760b362975c490e75ac75c9c09fe7c6cf0364c11c6f9c
SHA1 hash: 7e15fcc93b80f372d6057d35766e18535f749623
MD5 hash: 1131e6dae6363ffb403657bc1c91334d
humanhash: river-three-oxygen-october
File name:Fattura_01777150.pdf
Download: download sample
Signature Gozi
File size:147'728 bytes
First seen:2023-05-31 11:56:59 UTC
Last seen:Never
File type: pdf
MIME type:application/pdf
ssdeep 3072:Xrjbl/jvoE+c0hV5/HdIZyo3RBQ+zaj4kkd9aSP/Lkz47Gc0TS:XxLm1hjmPzk4JaSrBCc0+
TLSH T181E302AA17E98C84EDD38371C8607854C4DFB5F289E6947630BD1FBA7BD474886D00AA
Reporter JAMESWT_WT
Tags:brt Gozi pdf Ursnif

Intelligence


File Origin
# of uploads :
1
# of downloads :
467
Origin country :
IT IT
Vendor Threat Intelligence
Label:
Benign
Suspicious Score:
2.8/10
Score Malicious:
29%
Score Benign:
71%
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
0 / 100
Behaviour
Behavior Graph:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments