MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5ed0f5424863275bee953c0f189ce75cf1d16716e38ec2f097a3c0db55a9bc19. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 5ed0f5424863275bee953c0f189ce75cf1d16716e38ec2f097a3c0db55a9bc19
SHA3-384 hash: d64ef66a354bcc84b021fc329398b5b9ecd82983334c5c83b5b6cbf5251d698da5c50f5572ae56efa97379c76a94f33c
SHA1 hash: 232701acfe3f78a2f1cef359c3eadf83eda9fd31
MD5 hash: eda3ab1a3ebd766942d82153865cee44
humanhash: jupiter-lemon-autumn-lamp
File name:Revised Proforma Invoice .pdf.zip
Download: download sample
Signature Loki
File size:117'281 bytes
First seen:2020-06-22 08:15:52 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 3072:xE1E2O7d2aQNZkKSFcvL1yzSxWXTfa4cfA6Pv:sEJB2aQN15yWcjfa4cfXPv
TLSH EAB3132D90EB4E69F7C0EAAF787FAC99061D3519FEF9C4848417D326DB408819A2F542
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
71
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Packed.VbKrypt
Status:
Malicious
First seen:
2017-11-26 09:29:50 UTC
AV detection:
28 of 39 (71.79%)
Threat level:
  1/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 5ed0f5424863275bee953c0f189ce75cf1d16716e38ec2f097a3c0db55a9bc19

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments