MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e4157cb22199c8a22b6f9bef7b767c68bd3d43e7446e5dd2861fb0df945743b8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



SnakeKeylogger


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: e4157cb22199c8a22b6f9bef7b767c68bd3d43e7446e5dd2861fb0df945743b8
SHA3-384 hash: 1243d73ef086f93a34605cb522cef8ffbfbd2ba7ede1f12ef6e1ec7023d94562465914866c8fbc71fe21a34425af146e
SHA1 hash: e7d04d1516e09b1e1e71f68605c184d55e83f9f7
MD5 hash: 506e108edd6bca884edb84abab0c49df
humanhash: victor-cold-maine-solar
File name:09000000000NEW ORDER.RAR
Download: download sample
Signature SnakeKeylogger
File size:489'702 bytes
First seen:2020-12-17 09:08:54 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:E19Rxkbc73IyDHJQoAGZ0LFoKId6En5Lj/lCoIK:E19RAc74ytdG+KI6Ov/8oIK
TLSH 06A42339DA158A46CF063B36256D99D4CB7BE7D33C0C4FCA20A1D70E36859A6CCE6253
Reporter abuse_ch
Tags:rar


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: hosted-by.rootlayer.net
Sending IP: 185.222.58.152
From: orhankose85@hotmail.com
Subject: NEW ORDER#090800
Attachment: 09000000000NEW ORDER.RAR (contains "09000000000NEW ORDER.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
222
Origin country :
n/a
Vendor Threat Intelligence
Result
Gathering data
Threat name:
Win32.Trojan.Pwsx
Status:
Malicious
First seen:
2020-12-17 09:09:09 UTC
AV detection:
8 of 48 (16.67%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

SnakeKeylogger

zip e4157cb22199c8a22b6f9bef7b767c68bd3d43e7446e5dd2861fb0df945743b8

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments