MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7b0d940175c7c440f5bc5b54bf72b899fc5cef36ff62e65c2f52856e75d0b05b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RecordBreaker


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 7b0d940175c7c440f5bc5b54bf72b899fc5cef36ff62e65c2f52856e75d0b05b
SHA3-384 hash: 0d76a4eaceb0de02862775baef1450780d86bc094feb28dfa3a0dadf1e78d265aa4af148420564fd208af56a8df248c1
SHA1 hash: 60f8086086b8dbd7f554ed7ab26fc3aa1fc0c732
MD5 hash: 78f73bb0c5c60d2eaf56978a4d345d3e
humanhash: stream-oxygen-hot-table
File name:Brief & Sketches.rar
Download: download sample
Signature RecordBreaker
File size:1'902'827 bytes
First seen:2022-09-20 16:28:20 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 24576:TCPkjZfMlqpb6OgGdGJnLdMGEc6IwcMeTCjkU1SrlqvvkQLzlGJnHCN8V7iBrn49:ThSGb6OHcnJTTCIh8vkQNcni2ehOXvX7
TLSH T1F295230CCFA41133BA721414BE2D4A37726A461D2DC1CC4F6F96BFF28BD299C54AE166
TrID 61.5% (.RAR) RAR compressed archive (v5.0) (8000/1)
38.4% (.RAR) RAR compressed archive (gen) (5000/1)
Reporter iamdeadlyz
Tags:exe lnk RaccoonStealer rar


Avatar
Iamdeadlyz
C&C: 91.201.25.172

Intelligence


File Origin
# of uploads :
1
# of downloads :
367
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.Midie
Status:
Malicious
First seen:
2022-09-20 16:29:15 UTC
File Type:
Binary (Archive)
Extracted files:
713
AV detection:
9 of 40 (22.50%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Modifies Internet Explorer settings
Suspicious behavior: GetForegroundWindowSpam
Suspicious use of FindShellTrayWindow
Suspicious use of SetWindowsHookEx
Suspicious use of WriteProcessMemory
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

RecordBreaker

rar 7b0d940175c7c440f5bc5b54bf72b899fc5cef36ff62e65c2f52856e75d0b05b

(this sample)

Comments