MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c8534a064fee1283d2319c186c503240169ec4001c540dd3d90d86c69d57c014. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: c8534a064fee1283d2319c186c503240169ec4001c540dd3d90d86c69d57c014
SHA3-384 hash: 53a38c5adb0d79ea0f4d0c8cc8500a20131ef5dc491bdae09fa9ca3c29689e12a6d2f43e0e20c9ecc3ab57c569baac87
SHA1 hash: b9b7e3d645949f046f63c62a55892cb5a02ed88d
MD5 hash: 2d1c70611e9381a920612208f248dc94
humanhash: uniform-cold-ten-mike
File name:MV Crystal BAY_pdf..arj
Download: download sample
Signature Loki
File size:354'000 bytes
First seen:2020-07-16 08:41:42 UTC
Last seen:2020-07-17 00:04:38 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:97aKsjL+QkyZwp6RfpgKIptK5BbaNPR4eJ5c5pmp2FQF/Hw4Qt25Z1DihhZ3EKt9:pafwpGBOK5I1cuuo/HPQty2hoOQi
TLSH 407423B84F71039B485781105CF566996D02D8C129CE00BFBEEF4ACEA7079F987A247B
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
6
# of downloads :
70
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-07-16 08:36:27 UTC
AV detection:
33 of 48 (68.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip c8534a064fee1283d2319c186c503240169ec4001c540dd3d90d86c69d57c014

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments