MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6a7387afdb73b44b94087ba19f3e6cfa91641e8ef060bb9ce4e32f71f611ba0f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 6a7387afdb73b44b94087ba19f3e6cfa91641e8ef060bb9ce4e32f71f611ba0f
SHA3-384 hash: fd49f648cf3077fb35ea6999f46b6aa2a3f42d8ae870beb13ed6d10710bf86184facdb2f80797a8ea1157435c9136945
SHA1 hash: fdafc88382441367881126261c27e041ce1ee578
MD5 hash: 940741424168eeee43c7aa2cb47a3e7d
humanhash: iowa-kilo-spring-asparagus
File name:NEW PO2020_pdf.gz
Download: download sample
Signature Loki
File size:362'359 bytes
First seen:2020-06-08 05:53:59 UTC
Last seen:2020-06-08 06:35:03 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:LwMyLb+clvFDJXLvjY9gBxqeoOntpffEUAaWP65wNr1YlGKx64:LwMyLb+cpbvjqKxn7caWP62Nr1Sx64
TLSH C0742384B34D2F510EC7B211AAA1C6EF2FD89D734A034A9779BD77CB6CC185BA640603
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
4
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.LokiBot
Status:
Malicious
First seen:
2020-06-08 02:03:45 UTC
AV detection:
25 of 31 (80.65%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 6a7387afdb73b44b94087ba19f3e6cfa91641e8ef060bb9ce4e32f71f611ba0f

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments