MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a40725971a63c619b25ca3d5e6aac2c85586c8a60c893362c80dca5d0d649888. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: a40725971a63c619b25ca3d5e6aac2c85586c8a60c893362c80dca5d0d649888
SHA3-384 hash: 494d07f6cd78b1893f1b8de8c475d87c7d1ea8ee1c835590195db85372c8f8036ffef58616da6d6facc0b6adc99140a7
SHA1 hash: ce4848a3cf8b6450ad4f4b228ccbca3c427d3284
MD5 hash: 6c2d1fb266fdd70d64518d6acc03400e
humanhash: quiet-thirteen-jersey-comet
File name:#0007JK.ace
Download: download sample
Signature Loki
File size:163'160 bytes
First seen:2020-06-23 11:42:45 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 3072:5GFs3kBRm97A0cj3+NG6aA0anJlnm3wxonwYpCGYrHCqtMmA1PnIxrEPmqVkN:n3ORF9jH6fnTNxnQJYFtZgmmy
TLSH 85F313DD9080CBAE2A8469F1ADFDAE31072B945D506E04A7A4F1C97966AF13274CF40F
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-23 11:44:04 UTC
AV detection:
19 of 31 (61.29%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

ace a40725971a63c619b25ca3d5e6aac2c85586c8a60c893362c80dca5d0d649888

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments