MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d4dcd8460e79e3bd2f9dfc3534511c8b91871094bad204f74f290e737a661e90. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: d4dcd8460e79e3bd2f9dfc3534511c8b91871094bad204f74f290e737a661e90
SHA3-384 hash: 46d2bfde6b1da8863e5af5c7d68ad4f27f585eb96acdf0ec185c17ea48ea0fcc951e2e988738357ff32834e4697be0cc
SHA1 hash: 1ffaa577c0cb70ebfe8f9ef6d6081baa8fea67b6
MD5 hash: 3508b915c3bee93a9af126fde0304ebe
humanhash: salami-michigan-arkansas-michigan
File name:DESC_TUNA LONGLINER.zip
Download: download sample
Signature Loki
File size:379'608 bytes
First seen:2020-11-11 14:17:36 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:kD+WuQB2mpC9yzOaVnWT/PIK8eZv01DOBYxy/db/AndDVDUtBGgrEMUR0wGjN+Zd:GxuQB28vvWTXF8ex01DokyNongTvIkwX
TLSH F584230BD47293D1BB411DD5B628CD8D88BDCEC66682ED539ECD46AEC61F8C08DAD720
Reporter GovCERT_CH
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
85
Origin country :
n/a
Vendor Threat Intelligence
Result
Gathering data
Threat name:
Win32.Backdoor.Androm
Status:
Malicious
First seen:
2020-11-10 18:57:20 UTC
AV detection:
25 of 29 (86.21%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip d4dcd8460e79e3bd2f9dfc3534511c8b91871094bad204f74f290e737a661e90

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments