MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8716374c3ecca5fbd8146c1fb51bd84077289ed6b0bfe3e49e4eda26df71bfba. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 8716374c3ecca5fbd8146c1fb51bd84077289ed6b0bfe3e49e4eda26df71bfba
SHA3-384 hash: 99e83a3ca42cbdb93c7745700b50fbf3749572ec7263f58fac5ddeba28ffba223a37d0d4efd94560f32b6dd516f48f88
SHA1 hash: 4e57d3be422d925fcfda5f3c3220e2159d1a70e6
MD5 hash: 1c16936360390e4418aaf7c86620e32b
humanhash: fish-michigan-carbon-may
File name:E-PAYMENT_pdf.arj
Download: download sample
Signature Loki
File size:1'303'687 bytes
First seen:2020-05-08 14:07:20 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:UOV8zLIrlR1xGpjwCP0XKlehChjeSIRPhL0OqbW57ZaVQTDd1e7F:1V68Lx+LPpDhpIRP9za67g6O
TLSH F05533724EF4F910A4B901F6AF92AF449F80407C8F059BD0510AAB9756E1E6CF1DDAB3
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
82
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-08 14:35:47 UTC
File Type:
Binary (Archive)
Extracted files:
27
AV detection:
28 of 48 (58.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 8716374c3ecca5fbd8146c1fb51bd84077289ed6b0bfe3e49e4eda26df71bfba

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments