MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e746b39c9f9b500d149df109aa8706156c34b3a3b1086752c6639b3cc99fec2a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: e746b39c9f9b500d149df109aa8706156c34b3a3b1086752c6639b3cc99fec2a
SHA3-384 hash: d41a6ec58911daaf3a00cba9e9d2a48f20bca8e5ecb985329160461d58bf736948718dff556f82f97764b8ed4e16b118
SHA1 hash: c55d75e488695b5fc99ada50c2d421e319f8d691
MD5 hash: 4c5349fcc1a1239902f51b320e57ea80
humanhash: sweet-freddie-shade-montana
File name:Copy-scan doc01115_pdf.gz
Download: download sample
Signature Loki
File size:338'377 bytes
First seen:2020-05-21 07:56:10 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:pqlQwGMskptDAxNSX20sCvdyW/OHMG/sy0/h0g6EdxOmpVP+UG:jwGyptLX5yTHMGP0yI9G
TLSH 177423E9A6C128B780DD9E6741D05E2B497E1B02896ED31393ECD56E8943FE0EC3C0D6
Reporter jarumlus
Tags:Loki

Intelligence


File Origin
# of uploads :
1
# of downloads :
75
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-21 03:56:31 UTC
AV detection:
28 of 48 (58.33%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip e746b39c9f9b500d149df109aa8706156c34b3a3b1086752c6639b3cc99fec2a

(this sample)

  
Dropped by
Loki
  
Delivery method
Distributed via e-mail attachment

Comments