MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c7d2dfd249dd08be4088f380c2257b2436efcdbdf793ef968c32286c8edabba1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



MassLogger


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: c7d2dfd249dd08be4088f380c2257b2436efcdbdf793ef968c32286c8edabba1
SHA3-384 hash: ff5bb3d95a1dcc04e6dbbae8c9f712cbe52c4dbc9a0602a0526cb6cca4ad08c59cedfcca23a05e1d264a12d0647a8fe6
SHA1 hash: 313d6c769029427b70d6e04f8cd0e263e530ec75
MD5 hash: 9cebad7ae2cf722c968a1d977dcb85a7
humanhash: edward-alaska-purple-purple
File name:Inquiry List Info.zip
Download: download sample
Signature MassLogger
File size:1'049'789 bytes
First seen:2020-08-30 05:56:41 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:wAxlf9axbafxBFgvsk00HW9N2Th08YJqd7P8GrXIty:wAxiOLC0tx9N4h778Grj
TLSH 5025338A5524ECC34B55B0906CE5D4FB59305F807D22BB42DFEA8BCAD5692E32DCB06C
Reporter abuse_ch
Tags:MassLogger zip


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: mailsnd1.chol.com
Sending IP: 203.252.1.122
From: dwmetal <dwmetal@chol.com>
Subject: Price Inquiry
Attachment: Inquiry List Info.zip (contains "Inquiry List Info.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

MassLogger

zip c7d2dfd249dd08be4088f380c2257b2436efcdbdf793ef968c32286c8edabba1

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments