MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ef3a1f525f383f8d5000a9f6fe4337f3c561ad41157d7cbb1bb2905aea18435c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



RaccoonStealer


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: ef3a1f525f383f8d5000a9f6fe4337f3c561ad41157d7cbb1bb2905aea18435c
SHA3-384 hash: 710b66b0450ba11a247f28030da2a6648957453c98b4f366092f1e4e731c2dc7e43d27668593c5faeaf29c0aa53b0352
SHA1 hash: 031a7c15725f6e0802c35e69575333174ab8fa7d
MD5 hash: de41d192d8edae77fcdd922b8e4a2269
humanhash: fourteen-lamp-uniform-missouri
File name:de41d192d8edae77fcdd922b8e4a2269.exe
Download: download sample
Signature RaccoonStealer
File size:548'352 bytes
First seen:2020-05-15 09:51:54 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash 17ea3830e572db020ba385bdc51716d4 (1 x RaccoonStealer, 1 x Loki)
ssdeep 12288:2rczh71gS8E369yvdSsQ85Z8+ZKGCfouMeUuuo3fGLLedSXtiBp:2AlAE36+dYsWtwuMwuo3fGGdSXcB
Threatray 318 similar samples on MalwareBazaar
TLSH 50C4D002A3E16C25F3B34A314A2B8BE5167BB9F3AD75767B1E047A1F0DBD1A08553312
Reporter abuse_ch
Tags:exe RaccoonStealer

Intelligence


File Origin
# of uploads :
1
# of downloads :
89
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-15 08:12:27 UTC
File Type:
PE (Exe)
Extracted files:
69
AV detection:
27 of 31 (87.10%)
Threat level:
  5/5
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Behaviour
Modifies system certificate store
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

RaccoonStealer

Executable exe ef3a1f525f383f8d5000a9f6fe4337f3c561ad41157d7cbb1bb2905aea18435c

(this sample)

  
Delivery method
Distributed via web download

Comments