MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 780ca0dbaceb85ddb29c6cc8441f9e8c34cc12cc808ac3353f71bf9a74adcfde. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 780ca0dbaceb85ddb29c6cc8441f9e8c34cc12cc808ac3353f71bf9a74adcfde
SHA3-384 hash: 3fbb3170c198a49afee25f2a4a96475871356b37b5bd427b27dce5dca9706615b5fbbfd7d9ff3e0a5c13a40e203c5668
SHA1 hash: a7012a280424bcb43e4255ab1ed3a1490d11e723
MD5 hash: 2e43f003b2ecac2929a8b63c33963a76
humanhash: bacon-seventeen-ten-oklahoma
File name:payment.iso
Download: download sample
Signature Loki
File size:139'264 bytes
First seen:2020-03-19 06:22:38 UTC
Last seen:Never
File type: iso
MIME type:application/x-iso9660-image
ssdeep 1536:7W61eJ4BIeWJSkW8uTZs4z5NP9NBtmiY:SueeBIvMkWvTG4tl1tnY
TLSH BCD35A03FB40E42AC4588B3D5CAAE79111537C5565B6C68B72DC7B2F6BF30A18F19B28
Reporter cocaman
Tags:iso

Intelligence


File Origin
# of uploads :
1
# of downloads :
71
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Geniso
Status:
Malicious
First seen:
2020-03-19 09:38:12 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
18 of 31 (58.06%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

iso 780ca0dbaceb85ddb29c6cc8441f9e8c34cc12cc808ac3353f71bf9a74adcfde

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments