MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 693627cd7a5d4fbba7cfcace5e88abd2b9d0f8eef33af941843ed78795f2daea. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 693627cd7a5d4fbba7cfcace5e88abd2b9d0f8eef33af941843ed78795f2daea
SHA3-384 hash: 66040e6e28c2b12e57e500375b0f9b246e9354ffbc358206134d5836dfcf87086c6e10d5b60089e00542f4c368d5327e
SHA1 hash: cf685c478da445ba9497b18b00cef55e7835a938
MD5 hash: 4547755996705083e3754f7bbab3edc6
humanhash: iowa-seventeen-autumn-rugby
File name:scan copy-511091_pdf.gz
Download: download sample
Signature Loki
File size:335'757 bytes
First seen:2020-05-20 06:23:05 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:5aGwC2nyfHyrcBcNL8LmKL0cGFAOkYg1tg5sewd8Ml6x8pNjuilsEz:8yH9FMcAALHH2sp8xm6G/z
TLSH EB64239B4E11EC314C08B3F151A8887D7BDDB2A41DBDE4E26213AD514D1E2FBB5A82C7
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
83
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-20 09:46:26 UTC
File Type:
Binary (Archive)
Extracted files:
296
AV detection:
23 of 31 (74.19%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 693627cd7a5d4fbba7cfcace5e88abd2b9d0f8eef33af941843ed78795f2daea

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments