🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 88eb87f67aefe33b394ba0eb9f50177b9feade449c5960a972a771bdde985f0f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 6


Intelligence 6 IOCs YARA File information Comments

SHA256 hash: 88eb87f67aefe33b394ba0eb9f50177b9feade449c5960a972a771bdde985f0f
SHA3-384 hash: e7b7a6a7d9e34905db6019a772a30c7bb983a9e3667dd9601d5d5cd66ddc04e8867fc8092db633148083f96a3388fe6f
SHA1 hash: 411dbca8616af404bb7899fab1f2f03c00dd6798
MD5 hash: 29882a5867707b532b99a19df982de58
humanhash: hotel-nevada-twenty-avocado
File name:comunicazione(1)(1).pdf
Download: download sample
Signature Gozi
File size:47'273 bytes
First seen:2023-05-25 13:14:49 UTC
Last seen:2023-05-25 16:50:17 UTC
File type: pdf
MIME type:application/pdf
ssdeep 768:doTv18zXUbOQDr1tl83MLrNXZ6B6vySz+2HSvjxn3prfQGnhfD5xq3HMLsrP8NkP:dorh1tl5HRABZS62HSjtlScL3kP
TLSH T19323D06EA2F9A44DC08619B6D86534828A4CF336BED014D238ED4CDF9B04C68DE676E5
Reporter JAMESWT_WT
Tags:agenziaentrate Gozi pdf Ursnif

Intelligence


File Origin
# of uploads :
3
# of downloads :
443
Origin country :
IT IT
Vendor Threat Intelligence
Label:
Benign
Suspicious Score:
4.2/10
Score Malicious:
43%
Score Benign:
57%
Result
Threat name:
n/a
Detection:
clean
Classification:
n/a
Score:
0 / 100
Behaviour
Behavior Graph:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments