MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a576ea68c1642de3f837cb90a1b9743b456b89bd251d0df578c4daf34bbdec77. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: a576ea68c1642de3f837cb90a1b9743b456b89bd251d0df578c4daf34bbdec77
SHA3-384 hash: 13bb98453c9c6e4727473ba38efec7cfc41a3ae8374673fbd48d2c4f0edca9afa603480b5d08bce6190100d5ad59208b
SHA1 hash: 55ad26ff53de8f190614de4861be98557afe1fe8
MD5 hash: 1e53f72d74bea3fc73f27e95e0214710
humanhash: edward-seventeen-ten-wisconsin
File name:Mt103bankENcopyswift.zip
Download: download sample
Signature Loki
File size:167'755 bytes
First seen:2020-05-22 04:24:29 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 3072:LSs6eY7nUd9PZelbyKUXELWE128thk3NMhfSPngI1J5aqcNwJYGOVpkT:0v7AKbyYLWE128t4I+nXxKqWGOAT
TLSH 71F323FE6B15C1492284019FBD85134A608D98469F5FF388C8EB48BB3F7062F686D4DB
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-22 04:35:24 UTC
File Type:
Binary (Archive)
Extracted files:
9
AV detection:
25 of 48 (52.08%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip a576ea68c1642de3f837cb90a1b9743b456b89bd251d0df578c4daf34bbdec77

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments