MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9e2fc392cf176b8db0877c97cda7e6729a00fb99c0529f67781c30da3924bdcb. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



ModiLoader


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 9e2fc392cf176b8db0877c97cda7e6729a00fb99c0529f67781c30da3924bdcb
SHA3-384 hash: a137175b461a7f5637b6dd75e0306835234c9dc10c3e89f9e01d7bdd20fd9063aa70fc4f1ce051ac3e35f87c635c77d2
SHA1 hash: d015d3f6f96ad627077d527cffb1a5378d558f81
MD5 hash: 76c3f6725a6c7653e1f07e73a2414fd6
humanhash: thirteen-carpet-montana-uncle
File name:Richiesta di ordine.img
Download: download sample
Signature ModiLoader
File size:1'122'304 bytes
First seen:2020-12-09 10:21:35 UTC
Last seen:2020-12-09 11:00:05 UTC
File type: img
MIME type:application/x-iso9660-image
ssdeep 24576:cklbZpRNhPXNH/yLjaKuOflEAE7D/cX+2hu0a:ckhRXNNKuOtEX/2vhux
TLSH CD35BFE2F2D1413EF5361570DD078675A828EE142E9E984637BE2E0C4F7D6C6380B99B
Reporter lowmal3
Tags:ModiLoader

Intelligence


File Origin
# of uploads :
2
# of downloads :
108
Origin country :
n/a
Vendor Threat Intelligence
Result
Gathering data
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-12-09 09:36:06 UTC
AV detection:
22 of 46 (47.83%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

ModiLoader

img 9e2fc392cf176b8db0877c97cda7e6729a00fb99c0529f67781c30da3924bdcb

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments