🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d25df04b36d35c91bab31d4ba9a593f7ecb3615944c2da7f0bcabce251019ebb. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: d25df04b36d35c91bab31d4ba9a593f7ecb3615944c2da7f0bcabce251019ebb
SHA3-384 hash: 4847323d65c6140d3b3c208c6e1baf39cf73f7e4e9c2af015b17c8e4c918f6afc602873d548e0ca59ceb2aafbbc73cc4
SHA1 hash: 7658aa78829f9c5b3f0d74cde4aea553433105fa
MD5 hash: 16cb0cab061fb7042ea61bdf9e3f9aed
humanhash: burger-earth-fillet-vegan
File name:condizione45.zip
Download: download sample
Signature Gozi
File size:2'144 bytes
First seen:2022-03-23 09:49:07 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 48:9H+Tsbq9sRboQDobQN7zjK79EU3QUoR5seDvYMextqUSEOz4:0pOrDob0nK77gfvExtgEOM
TLSH T1C841093CBCB591BBC5794AF5186050E470564C323825D1BF35BC512F2594E9B36D7C0B
Reporter JAMESWT_WT
Tags:Gozi isfb mite pw mite2022# Ursnif zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
529
Origin country :
n/a
Vendor Threat Intelligence
Verdict:
Malicious
Threat level:
  10/10
Confidence:
100%
Tags:
cmd evasive mshta obfuscated powershell
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments