MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 33d60c9faaade8e037cc7f9944354e885cef8807f792be0b5456eca9c300f102. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 33d60c9faaade8e037cc7f9944354e885cef8807f792be0b5456eca9c300f102
SHA3-384 hash: 23d9834f03ff2c4c86c9dc1cf2a900d7b14fe0b09ad96da2dcd37202d40b0a3168515687723e9ca87ceec7eaed6a9b4c
SHA1 hash: fec17d040cfd2ca114792f72721b8dc54d29e59c
MD5 hash: bffafebce95997c20f37bbf3bf09db92
humanhash: lima-oxygen-vermont-lemon
File name:PO file-211091_pdf.gz
Download: download sample
Signature Loki
File size:361'447 bytes
First seen:2020-07-08 10:09:56 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:BpXRaH4eXje7R3myiwcs9Hi+vyUPk6ONEYjTJRIYTfOc+tooTowl90/0E:8YCj21mNzY9A6OuYjTHGFowl9I
TLSH 517423F5960EEB879E91531A0FD9F62E45292B8DE110741B4B2E3A973D3987C18CCDC8
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
72
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-07-07 12:14:57 UTC
AV detection:
24 of 29 (82.76%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 33d60c9faaade8e037cc7f9944354e885cef8807f792be0b5456eca9c300f102

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments