MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0d14c9d1311f1c8a2f555e04f241008758ec348242ce39969604c6fd8d83b5d2. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 0d14c9d1311f1c8a2f555e04f241008758ec348242ce39969604c6fd8d83b5d2
SHA3-384 hash: 97257708a46dd4a7e429d25157da0d9651add94b311f43e6b2565ad5892df8b476f22d89821976a65a1c51ab8e28487b
SHA1 hash: fcd0297fb5c196026607ed17996f3ae2525f00ba
MD5 hash: 5ca42526c789c88f471c1ff50148cdd8
humanhash: river-berlin-carolina-saturn
File name:Payment Advice.gz
Download: download sample
Signature Loki
File size:371'743 bytes
First seen:2020-06-22 05:06:54 UTC
Last seen:2020-06-22 14:02:29 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:k42b6CCINqQdufY0Upe9hxDZ2bA8LqROZ9mjiVlhGdrBSd:kGCCIuY0XxDwUSN/BGdlA
TLSH 578423BE0453B889452D11608949FA0BE858AE4DF1FA4DB2F483D7D68787301FD3B66B
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
3
# of downloads :
68
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-06-22 05:08:04 UTC
AV detection:
18 of 48 (37.50%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 0d14c9d1311f1c8a2f555e04f241008758ec348242ce39969604c6fd8d83b5d2

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments