MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d260d6cf07d74ca3e53b6bd294387894d6a4a0b7c76132359007cba026cef144. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: d260d6cf07d74ca3e53b6bd294387894d6a4a0b7c76132359007cba026cef144
SHA3-384 hash: 2376eddc23ae88188d6dfd085e2672df353b52065f4bc434ce3cdb611317d0f9c3ef2100ae835487fc0251af8be60e4f
SHA1 hash: d23fab700d9b6a71c5b920aa290b0c21aa2c3883
MD5 hash: bd4d42e4b92ec5bad89ce9df7a46b860
humanhash: mountain-coffee-shade-october
File name:SHIPPING DOCUMENT.gz
Download: download sample
Signature Loki
File size:17'949 bytes
First seen:2020-05-15 05:27:12 UTC
Last seen:Never
File type: gz
MIME type:application/x-rar
ssdeep 384:ovTrQ8F3cZloJ2FLHirCDl1MmIPQBINom4sZscMh1v59yc6ajYz:SteZlDmeDjMmtINLQca0z
TLSH DD82D005B1163C8F1FC7587C2A6870D5C87898ACEAEF8BCC9A05313C9259F5F6A74987
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
83
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-15 05:35:50 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
24 of 48 (50.00%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

gz d260d6cf07d74ca3e53b6bd294387894d6a4a0b7c76132359007cba026cef144

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments