MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9cbac850041eac72718fd47cbd52fc3f9048502e6e89da827e57f339d84815d1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 9cbac850041eac72718fd47cbd52fc3f9048502e6e89da827e57f339d84815d1
SHA3-384 hash: 258d373c26141af7eddcaa8530d1e8a3500328c6924818bdf3545a6bc722b67b3bad942bde0560b132b6abb0d3519b7e
SHA1 hash: 72972cde4068ae9dff241335c667442d863ba1ce
MD5 hash: 6c04e143ef240a4453555bb5010939d0
humanhash: lion-lion-bluebird-quiet
File name:Equipped with an Intelligent System.zip
Download: download sample
Signature Loki
File size:403'799 bytes
First seen:2020-07-06 05:03:34 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:WIScNjWpayvsOnPC33RBafKHWg20QvyBwJq:WI9jWpAOnPYBbWcQqBwJq
TLSH 1184238169FFA9069CDF77B964B1C4D05A10FE70A73E1F1E1BC2D6008E1171E95A3AB2
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
66
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.LokiBot
Status:
Malicious
First seen:
2020-07-06 05:05:04 UTC
AV detection:
24 of 29 (82.76%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip 9cbac850041eac72718fd47cbd52fc3f9048502e6e89da827e57f339d84815d1

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments