MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0d452c52987a5682d955419c14303c3de71169e64f544a8c7fabb02f795a39c4. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 0d452c52987a5682d955419c14303c3de71169e64f544a8c7fabb02f795a39c4
SHA3-384 hash: a940aa0aeda9640d44a47130fb597662ac0762ce44f1ac0241906464a71712eac1a5259595d65fab4ad21b8fa8983a6e
SHA1 hash: 731d589078559d2b6e326179527ef8edd817ca3b
MD5 hash: beb42314862d9d30dc911dffef0352d3
humanhash: ack-lactose-one-muppet
File name:copy-3003003_pdf.gz
Download: download sample
Signature Loki
File size:445'782 bytes
First seen:2020-07-22 02:38:49 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:OTTb1L6RtT2D0PHlBwb1PKzEjy8ykwSS3O:OITT2G1zEOQjSO
TLSH 109423ED05F7ACBF3A51D37C669C7118390B960DC3BB6D4E9E4EB598470209CE2A642C
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
74
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-07-22 02:40:07 UTC
AV detection:
23 of 29 (79.31%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 0d452c52987a5682d955419c14303c3de71169e64f544a8c7fabb02f795a39c4

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments