🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9b1f31bdc9ae8596f6cbf32f213857d74aa0801caf8bcf2f3b23ac9efb0d8f29. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 9b1f31bdc9ae8596f6cbf32f213857d74aa0801caf8bcf2f3b23ac9efb0d8f29
SHA3-384 hash: 0ba51e5120682684e7809e3784e939d45778384e99c806e98ab7a056d0cea7aa96c10a9f6752f09ce4bd566845790ab8
SHA1 hash: 11eb965374b01c766fcb59fa1afc4ad0e9bd507d
MD5 hash: 5ba9ba2fdc982323061d2fa8977b73e2
humanhash: london-leopard-potato-lion
File name:highlighted.cmd
Download: download sample
Signature Gozi
File size:378 bytes
First seen:2022-10-20 12:26:06 UTC
Last seen:Never
File type:cmd cmd
MIME type:text/x-msdos-batch
ssdeep 6:hcHAsxZ0Kr/LGFRy+f8z3AoACo7Jcvkwhl+rEqAyhIySOF0KFPKivS6MhzOv16Dv:SdxZ0KrDGFRX0zwBXwCrEq9h1T0KAiax
TLSH T1BDE0C01646432D0D19C17004A8F642C7CD9540BCB089D801BFCB3BC461C23AC4FD96AD
Reporter JAMESWT_WT
Tags:cmd Gozi isfb pw 758493 Ursnif

Intelligence


File Origin
# of uploads :
1
# of downloads :
174
Origin country :
n/a
Vendor Threat Intelligence
Result
Threat name:
Unknown
Detection:
clean
Classification:
n/a
Score:
1 / 100
Behaviour
Behavior Graph:
n/a
Verdict:
unknown
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments