🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4f59cbea145eb8e6b34ca7ad48574555458d8f9740e624d83dea7fb6468aa4ca. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 4f59cbea145eb8e6b34ca7ad48574555458d8f9740e624d83dea7fb6468aa4ca
SHA3-384 hash: ea01d40db0731b525f55721a0d4c1b66b0773d696b65377e5891b15f79d103318454a1a13a09d3f71aa5895d225badbb
SHA1 hash: 973abeab8e10e4754715f517b454a4959d431e62
MD5 hash: c5a9e6b0aaf73f57923202856a7dc9eb
humanhash: cat-wyoming-mike-romeo
File name:Swift-Advice-Wire0020009989300-pdf.gz
Download: download sample
Signature Loki
File size:391'442 bytes
First seen:2020-04-02 06:58:09 UTC
Last seen:2020-04-02 07:45:06 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:eVb3jiBtiD3psdx2Z4LTRYxriB30gKTCVa+OSwOsHYZtA9LKAE9hDq0UFk84PYQe:eVb3+BtiAFV4rGEccXHY3GKAE3JUFkne
TLSH DE8423E3C7FF65D96B635223528D6CA56A610C9F98B6B452E18C227C2F1F5B0F00843B
Reporter jarumlus
Tags:Loki Lokibot

Intelligence


File Origin
# of uploads :
3
# of downloads :
1'038
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-04-02 07:35:40 UTC
File Type:
Binary (Archive)
Extracted files:
48
AV detection:
31 of 47 (65.96%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments