MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 839db19ede4694c840eb9a9b38143a58d9bcc9b1351f97bc9e3edcbe04fe97ab. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 839db19ede4694c840eb9a9b38143a58d9bcc9b1351f97bc9e3edcbe04fe97ab
SHA3-384 hash: 6b6c6ab918d87c415361dc6fa6b51608c6a9a285bedd3270e2b16cd68c8acf9ba29372437e81ba4c57c222e2af31a95a
SHA1 hash: dc224c8841b47c463cd5a21158556a973efadce2
MD5 hash: 19fffcc0b9cd211be4d28e08e058124b
humanhash: william-two-burger-alpha
File name:PAYMENT-INVOICE_pdf..arj
Download: download sample
Signature Loki
File size:418'076 bytes
First seen:2020-05-12 04:24:53 UTC
Last seen:2020-05-12 04:57:00 UTC
File type: zip
MIME type:application/zip
ssdeep 12288:ZF5w0MJVU9kX/7Gpr5CZ9fV5VfL+oDcmcgiVxEh4BQzBKtYt:5wTLdv7g1Cv54oDSTVamWzBKat
TLSH 6894238BFBA5B553C1BA1ED258BB46600672007369FA755CCFEFE9C30B34049A72A135
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
2
# of downloads :
78
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-12 04:35:32 UTC
File Type:
Binary (Archive)
Extracted files:
264
AV detection:
29 of 48 (60.42%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 839db19ede4694c840eb9a9b38143a58d9bcc9b1351f97bc9e3edcbe04fe97ab

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments