MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 346425230d5fe038e5ee5f9e35f9c45578facae0364d0e62b2bbd42bc0b3fbac. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 346425230d5fe038e5ee5f9e35f9c45578facae0364d0e62b2bbd42bc0b3fbac
SHA3-384 hash: 03891d328a6eca2db32721c19b5be8fcb2d1d85ef633e455553a835103e7958584c659f3b94a81af6b04d944bc308143
SHA1 hash: b0e958f13a857316dd3757c4a2f12625319b65de
MD5 hash: 91206f2d2178e023ae6a647d5b39b6fd
humanhash: tennis-nebraska-salami-spring
File name:DHL_Receipt.AWB no 0904202076.ace
Download: download sample
Signature Loki
File size:216'717 bytes
First seen:2020-05-27 04:44:32 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 6144:1Z2pBq12BZ6aWpWcgmTeG8XC7ThPmk2m92tQ:91WiWcbTetEj2omQ
TLSH 0D2423F38967041D50E4FC4BB1374E7A27ADF8A6CA0A5113132815713E67ABAC3B8D35
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
61
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-26 22:48:34 UTC
File Type:
Binary (Archive)
Extracted files:
8
AV detection:
24 of 48 (50.00%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

ace 346425230d5fe038e5ee5f9e35f9c45578facae0364d0e62b2bbd42bc0b3fbac

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments