MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3f4e8c0df1946e41e83c7ba94b6465eea29e3a30b4d6da5ec281971765dea2bd. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 3f4e8c0df1946e41e83c7ba94b6465eea29e3a30b4d6da5ec281971765dea2bd
SHA3-384 hash: 0a3f10b921ec9e13564030c1f71027baa3671747148d1f76463aa3451d2ac8cf053143fb7838737cfeaf25016448e32d
SHA1 hash: 074deb19b0d78c7b41fbead84dee0fae30737144
MD5 hash: d60d934452495ca6efc5e317e4e49bd2
humanhash: robert-ohio-spaghetti-island
File name:scan file-005115_pdf.gz
Download: download sample
Signature Loki
File size:371'717 bytes
First seen:2020-06-03 06:32:22 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:hUxrHz1Gn2gPRjp4qrymdYqZMQic4i2+48vzEqg1OVYNt/gVoijpd+gN4ugO9pkj:hge3P7vrymdYIM04/+fAv1hNqo498d1
TLSH D184237C76A719C2D8656827F6CBCC414ADF2E9F70B3C4C08D8B971EBA4C28E9958744
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-06-03 01:01:26 UTC
File Type:
Binary (Archive)
Extracted files:
318
AV detection:
22 of 31 (70.97%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 3f4e8c0df1946e41e83c7ba94b6465eea29e3a30b4d6da5ec281971765dea2bd

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments