MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 754762a56a6fd0e361f4b04bc6761edac991fcf8e2f0046d177b05cbe18a0cd4. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 754762a56a6fd0e361f4b04bc6761edac991fcf8e2f0046d177b05cbe18a0cd4
SHA3-384 hash: 3de29ed0e58ab86088a7697aa05a09293c52a42e2df540d33c9182cbb1f27de4a1c9cbfe84705453fa7b7e9c10ca60e2
SHA1 hash: f890d5aa9d2aa42d13e5d069c46b6479060dfced
MD5 hash: 355e8f72bf2d23e601554882424ba09b
humanhash: seventeen-bravo-coffee-bakerloo
File name:Scan00051.gz
Download: download sample
Signature Loki
File size:351'884 bytes
First seen:2020-07-02 10:51:26 UTC
Last seen:2020-07-02 11:41:38 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:pSpisdtKOBwFRYPdZnw5BUimqwArQbutX7QLqQ1PgTKF2m3k33ZX7K2vv7SPXJey:gMsrKOwKdFw5BtmvATtXEGOXUh7rcXr5
TLSH 777423DC8F691E565DE18643253C333CBD5542FC9B368EA6CB66DEC670A2D404B3841B
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
4
# of downloads :
71
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.DelfFareIt
Status:
Malicious
First seen:
2020-07-02 10:53:03 UTC
AV detection:
14 of 48 (29.17%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 754762a56a6fd0e361f4b04bc6761edac991fcf8e2f0046d177b05cbe18a0cd4

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments