🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7742d0fc6cacc62378d3edda23ae0dbbfd535de851a8ece3400a4c7603cd948e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 7742d0fc6cacc62378d3edda23ae0dbbfd535de851a8ece3400a4c7603cd948e
SHA3-384 hash: 7da1836b69b0714071b6d2823e3ee776b2bd1af51e4b8e6e9db765e9145eb5429e5ffa00cfe7d4e3bbcd315aef4d8b51
SHA1 hash: b48e19a38d379739dccd7fd56a6994a2607d6962
MD5 hash: 542d041fdc6a8ab447d8892c0cdda79f
humanhash: eighteen-oregon-victor-one
File name:gov195.hta
Download: download sample
Signature Gozi
File size:10'322 bytes
First seen:2022-03-08 07:51:02 UTC
Last seen:Never
File type:HTML Application (hta) hta
MIME type:application/octet-stream
ssdeep 192:1YD+wfUdXXkZCkcFMRntBd943zrOnzUh/ig71XgbBt56hfhvQiRv06M8oe3drOFf:1YDtsf7qRntBd9Hzi6UdgNStRv0FmrGr
TLSH T16422085E776BD448D74300E7E45A6F0F5100CEEAEFF8D494B454034229BCF9EAA10A6E
Reporter JAMESWT_WT
Tags:Gozi hta isfb mise Ursnif

Intelligence


File Origin
# of uploads :
1
# of downloads :
286
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Script.Trojan.Generic
Status:
Suspicious
First seen:
2022-03-08 07:52:10 UTC
File Type:
Binary
AV detection:
11 of 27 (40.74%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments