🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9b3629290fd23e71bf57b4a9a80544d7e2fbc52dfe3a9873e1c53e650ad0f4f1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 9b3629290fd23e71bf57b4a9a80544d7e2fbc52dfe3a9873e1c53e650ad0f4f1
SHA3-384 hash: 0599e75c3af6b3db0289b04dc297eb3b3ab19e853ca5a635d4b5398e5e841988818055f4d33364e246e3800fb94ce2ab
SHA1 hash: 84bb0f98e71acb3de6c1c7575fd721668b4df68f
MD5 hash: fcfb90c0de38210dea9a1bcaa1b6ac2b
humanhash: enemy-snake-thirteen-nuts
File name:allegato145.zip
Download: download sample
Signature Gozi
File size:2'208 bytes
First seen:2022-03-23 09:49:12 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 48:9Ieh+ouWzD9WMRmrHCfpOL6mxY6t2qKrQfs+q/T3W4+fHxfw1AdS:l+oHzw/QORYaTKrX1TmJfwmdS
TLSH T14541399EC4037020E75BBA72554AE224F0584A22973AA9D705BF8D805BC05A0BABF382
Reporter JAMESWT_WT
Tags:Gozi isfb mite pw mite2022# Ursnif zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
509
Origin country :
n/a
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
cmd evasive mshta obfuscated powershell
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments