MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b219818cca07ba384317ba2336ccf278f73739f03f336107ebab88e838c3753b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: b219818cca07ba384317ba2336ccf278f73739f03f336107ebab88e838c3753b
SHA3-384 hash: cb0bf71dbe367490d652ef9411f90d0059f74dc0c334780f688387d2a146e96ddf8a63a2e0d36f931715dbe6ee585a9e
SHA1 hash: 03ce1e3127301183f9be0e041f0faa78733b2933
MD5 hash: dda2a3977f8bc79a6d0f6108b9a3c192
humanhash: utah-rugby-india-muppet
File name:Bank copy_pdf.gz
Download: download sample
Signature Loki
File size:377'703 bytes
First seen:2020-07-15 06:49:35 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:cZ/r3ol6y5wI/+Sd8QpE5ucOc0T+p8HNGpf3Y5mjJVlBeVEvAt5hJ7Or64V:GzYky5wE+SdNpENOhip2Gh/7lBeVCCOn
TLSH BF8423A52E118241F94FB1C95C32B5F882B06BB1357DE7FBA52AC0B493F526DC1663C8
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
72
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-07-14 13:26:46 UTC
AV detection:
25 of 29 (86.21%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip b219818cca07ba384317ba2336ccf278f73739f03f336107ebab88e838c3753b

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments