MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c9c44148239fd7aef0a1c61d2b9be0123b9144e185c82ba62aeaf167d9428b97. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: c9c44148239fd7aef0a1c61d2b9be0123b9144e185c82ba62aeaf167d9428b97
SHA3-384 hash: 9fc962cff90b7e87fe5e1cd700b7b3e1bb217a8b83ee6c258ca1f7d2500608057b9db9d832cd5160b1ba768a7652f863
SHA1 hash: bf14c4555db1261cdc4aa1714b4c95c0c219be9f
MD5 hash: 461ff2ecbac647b40830d8093125514c
humanhash: september-six-south-speaker
File name:Quotation-file-141094_pdf.gz
Download: download sample
Signature Loki
File size:396'957 bytes
First seen:2020-07-07 04:38:48 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:Lgl9p9OWmy+oH9wGg1WPX6OnY26lnUM6HVvQbf7dRC:LkwGg10YPH/dRC
TLSH EA84230073A21E6114B0BAE9190F0CEDFD8697A6EA1DD9748326746E5CFD2CC7439D8E
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
74
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-07-07 03:10:14 UTC
AV detection:
24 of 29 (82.76%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip c9c44148239fd7aef0a1c61d2b9be0123b9144e185c82ba62aeaf167d9428b97

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments