🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 f680ea5b0d75c7e2208c0251079f7f48e29476574c324e78f40112a2db01934d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Gozi


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: f680ea5b0d75c7e2208c0251079f7f48e29476574c324e78f40112a2db01934d
SHA3-384 hash: d6322a06f77fa98ecd04cc6db72b0a54a838f5fd0ed31121f1d951b6eda318aa7660c48d983896e63b58f1a7bdd9bbb1
SHA1 hash: 1dba17abc2d18ffe30233a827b219dc66311fbb8
MD5 hash: cd77ff149a8ae5c7c60874b5dda54185
humanhash: nevada-friend-carbon-failed
File name:vc32
Download: download sample
Signature Gozi
File size:226'463 bytes
First seen:2023-09-28 09:35:21 UTC
Last seen:Never
File type:unknown
MIME type:application/octet-stream
ssdeep 6144:b1lDaLN+2o5zu2h1uW+AYN8nNXEf4AtnPyxkK8:iLNat/bV+ZbB8kK8
TLSH T1C42422DE91B3A6CA99978773FCC8EA7BEB86D34C6500C1D28407DBF819159899C81CD3
Reporter JAMESWT_WT
Tags:agenziaentrate Gozi postinfection Ursnif ursnif plugin

Intelligence


File Origin
# of uploads :
1
# of downloads :
113
Origin country :
IT IT
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

Gozi

unknown f680ea5b0d75c7e2208c0251079f7f48e29476574c324e78f40112a2db01934d

(this sample)

  
Delivery method
Distributed via web download

Comments