MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 1146795d5a2055c622a868d9a9aef8c7a3a3b504f63c7c7508c6cbdf79430eca. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 1146795d5a2055c622a868d9a9aef8c7a3a3b504f63c7c7508c6cbdf79430eca
SHA3-384 hash: 5c893ffd70ba9fa6b3673407366ad8d8ccec0be4cf2a6f266b64d4c7aaa683ff8ca9d6f39856eb6962879c6d2d94e92b
SHA1 hash: db2798d677fa05c94dd59f43aa2f7e8cb6f37bee
MD5 hash: dde637988c884ba75252b33fc4abca70
humanhash: nevada-alaska-king-ceiling
File name:invoice.rar
Download: download sample
Signature Loki
File size:75'533 bytes
First seen:2020-06-04 06:11:06 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 1536:SGBR8Zd/mL96KEJ9iIk3PqNBULMT5Y7NxcdYg1kHMOBuL3vyQyCPO:SGBRQ/pHJPk3yzUoT5Y7NKdYg1kHHx9
TLSH DE7312D1D528B14528669113A8670EF433B00AC039466A5E7BFADDFF6ABBC3D142F472
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Fareit
Status:
Malicious
First seen:
2020-06-04 06:37:23 UTC
AV detection:
22 of 48 (45.83%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

rar 1146795d5a2055c622a868d9a9aef8c7a3a3b504f63c7c7508c6cbdf79430eca

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments