MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 95ce7e5f0f414f9bda6c98688a83824b0d166d0884354defc3efc2a9a8100e7a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RaccoonStealer


Vendor detections: 3


Intelligence 3 IOCs YARA 1 File information Comments

SHA256 hash: 95ce7e5f0f414f9bda6c98688a83824b0d166d0884354defc3efc2a9a8100e7a
SHA3-384 hash: 673e53784bfbd997a27189cb31e0a4ae929258497be6ca6e780f48ae80b295e291a7a9369d54d9c8b9b06866696569ed
SHA1 hash: 80debe04935bb689c4c475498cb696b031df0679
MD5 hash: 1e64b338cf423553c4c455082df09477
humanhash: timing-massachusetts-july-minnesota
File name:1e64b338cf423553c4c455082df09477.exe
Download: download sample
Signature RaccoonStealer
File size:449'536 bytes
First seen:2020-05-30 09:22:10 UTC
Last seen:2020-05-30 10:06:26 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash e854be910b0d091778c15574f55ff76f (2 x RaccoonStealer, 2 x ArkeiStealer)
ssdeep 6144:/WIlSKR+mNeNOOF7I1XahSCV/6Is5uceW+dP0AUrkBFMD5rThy+zCPoEHFtyAL81:rR+msTGGSCV/635uNUkBFI3hNJEiALK
Threatray 411 similar samples on MalwareBazaar
TLSH 25A401C2BBB1B0A9D45280B4B411A0635BEA78268F56F6562E4F670F1F313D18F6D362
Reporter abuse_ch
Tags:exe RaccoonStealer


Avatar
abuse_ch
RaccoonStealer C2:
http://34.105.219.83/gate/log.php

Intelligence


File Origin
# of uploads :
2
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence

YARA Signatures


MalwareBazaar uses YARA rules from several public and non-public repositories, such as YARAhub and Malpedia. Those are being matched against malware samples uploaded to MalwareBazaar as well as against any suspicious process dumps they may create. Please note that only results from TLP:CLEAR rules are being displayed.

Rule name:win_raccoon_auto
Author:Felix Bilstein - yara-signator at cocacoding dot com
Description:autogenerated rule brought to you by yara-signator

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

RaccoonStealer

Executable exe 95ce7e5f0f414f9bda6c98688a83824b0d166d0884354defc3efc2a9a8100e7a

(this sample)

Comments