MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4f1d287340060b09629bb21c8e55b8aae73a06d054ef49f82fceaab622839389. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 4f1d287340060b09629bb21c8e55b8aae73a06d054ef49f82fceaab622839389
SHA3-384 hash: 839e9cf1cee34b475e5f930c9ff2ed3eb069a6049e12914b332da0a8edb699bfca034e2678c327b7a69e1af9698defdf
SHA1 hash: 81593558b6e20b57815ba6e93f488b68794bb01d
MD5 hash: 54028ff1eefffb7fe43c6e839b1b8097
humanhash: fourteen-north-alabama-fish
File name:model.zip
Download: download sample
Signature Loki
File size:112'202 bytes
First seen:2020-07-01 02:29:48 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 3072:eo1tGW/aUgQ8DZXlPATJ2mZ/qz8mbt7qZ9Vj1tSu1:eSEegQ8DZVIt2Y/0rkztSw
TLSH 1AB3129239E55E9B6430D0B18D435ACE6F3F4970EB35E5A6032568F70ABBFCA1C0146E
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
78
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-07-01 02:31:04 UTC
AV detection:
21 of 48 (43.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 4f1d287340060b09629bb21c8e55b8aae73a06d054ef49f82fceaab622839389

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments