MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f2588711afc1b16c4f38d252abf2268c8a361662389f1ff95684dc2399d080b5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



MassLogger


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: f2588711afc1b16c4f38d252abf2268c8a361662389f1ff95684dc2399d080b5
SHA3-384 hash: b73d783db5d4a45a6c285ef5e7c11e4af81b95479570e718411fcf1bd9483e6ac5aa8ffc725d62d9a43730f36667be4f
SHA1 hash: 9702e69ea6943279d1a8f8c993a74298603b393f
MD5 hash: 50429c5e0403a469824059ac12714c73
humanhash: mobile-alpha-michigan-fruit
File name:List of our new order.zip
Download: download sample
Signature MassLogger
File size:983'085 bytes
First seen:2020-06-07 07:53:15 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:D0gj4gRGagqFmQogkpq7YnK7U14GI2uNmecWaTw:DHjBgqFmQskEnK7U14nOTw
TLSH 0E253393F6552A984F1FA422F3207CF72C492501733B9BE9A200A277578BFA40FE7556
Reporter abuse_ch
Tags:MassLogger zip


Avatar
abuse_ch
Malspam distributing MassLogger:

HELO: server.linux80.papaki.gr
Sending IP: 138.201.37.101
From: sales@gouritrading.com
Subject: Re: new order
Attachment: List of our new order.zip (contains "Order.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
63
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

MassLogger

zip f2588711afc1b16c4f38d252abf2268c8a361662389f1ff95684dc2399d080b5

(this sample)

  
Dropping
MassLogger
  
Delivery method
Distributed via e-mail attachment

Comments