MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d081ca5b55b24961ecd0995d552738fd10d99eee99f0fe15ee6aa953006a31c8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: d081ca5b55b24961ecd0995d552738fd10d99eee99f0fe15ee6aa953006a31c8
SHA3-384 hash: aafe2b1db64535a3787f4fca772247ad809485cf8eb4b8f7cca181dc3af25dc4b3759a29ec758cfa3a8b3fa57b00393a
SHA1 hash: 97ab2d2a8c7f2f3e72555979d03ea1e2ece60559
MD5 hash: 6767c83c3bd4d04f34c7f3a123e7a888
humanhash: avocado-freddie-eight-victor
File name:Inv-D.r1900122_pdf.gz
Download: download sample
Signature Loki
File size:446'081 bytes
First seen:2020-07-22 04:04:40 UTC
Last seen:2020-07-24 12:26:38 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:wSXVuaugO/ugiU7d/8fXJACO1r+6y3xct08eEZkcQ5++yIXC2VGGkl5m8e9fbqf+:wiVua/U7yBAyhpEZkx74DPsbgRKZ
TLSH 0C9423E6CF8137614684173C5FCBBCB7B9A6DB0DA65FB87C802FB644605D609206362E
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
6
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-07-22 04:06:07 UTC
AV detection:
21 of 27 (77.78%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip d081ca5b55b24961ecd0995d552738fd10d99eee99f0fe15ee6aa953006a31c8

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments