MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3d6f3da732bc85668a69878f21bdd85259d89c9f9845fc18cee919845a326326. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 3d6f3da732bc85668a69878f21bdd85259d89c9f9845fc18cee919845a326326
SHA3-384 hash: 958a9c464d2f13e333704915059ab19db532a21966480992f9634b27520a9c49159e8d3b2aa56f0fab8d6466878e1b17
SHA1 hash: b04d3607cc7aa286dab40ed136a66bbdf64e475b
MD5 hash: d4cea0a27cfad68b39eb80dafb24a977
humanhash: orange-yellow-robin-nebraska
File name:INVOICE-V18-1515_pdf..arj
Download: download sample
Signature Loki
File size:349'969 bytes
First seen:2020-06-29 01:06:43 UTC
Last seen:2020-06-29 01:46:34 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:esdiy0COiI+V4etzEzsk9Wp+wnJFiT2CJUOglgaSh9x4j87cIF0Xlc1LKRGudQly:esdUAPt4L9WghCXVgr4j8Yw0XWRK0udb
TLSH 507422F37360D122D14AC85B2EEDBEF60E19128C87ED595596730E746CAF2B7250BC82
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
3
# of downloads :
68
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-06-28 23:37:06 UTC
AV detection:
28 of 48 (58.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 3d6f3da732bc85668a69878f21bdd85259d89c9f9845fc18cee919845a326326

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments