MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e993da4d9a7466909b4770b20324cfa09e00cb4942ac9fc96b87acf187fc8106. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: e993da4d9a7466909b4770b20324cfa09e00cb4942ac9fc96b87acf187fc8106
SHA3-384 hash: f8fdf0e132e1ac24fc2708144d4d8c06378f6661da00cecdc0b1595a7f6b00b6371b73df81e25eb5b8349b3bf2556ba0
SHA1 hash: ab098b5acb1e1f9533aebe7b5831501fd87a3363
MD5 hash: 6dc1f9557e5521305b2fdb3d566f13d9
humanhash: william-green-one-fourteen
File name:6575.ace
Download: download sample
Signature Loki
File size:73'752 bytes
First seen:2020-06-15 16:56:54 UTC
Last seen:2020-06-16 04:47:11 UTC
File type: ace
MIME type:application/octet-stream
ssdeep 1536:1pXOwktPx5J4M49RNrsJ2pejUBPndFc1QfRq++AMqipnQPtbcKi5WCW:bHkRONrsJiQ+di19AzIQPtY34CW
TLSH 6373022F295CDB84B0782F2E522C855A537DA0D87C38F5F41EAA9C93DBE605758FC508
Reporter cocaman
Tags:ace


Avatar
cocaman
Malicious email
From: office@e-pneu.ro
Received: from static-84-242-95-205.net.upcbroadband.cz (static-84-242-95-205.net.upcbroadband.cz [84.242.95.205])
Date: Thu, 04 Jun 2020 00:04:49 -0700
Subject: APROBARE DE COMANDA
Attachment: 6575.ace

Intelligence


File Origin
# of uploads :
2
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-06-04 00:33:38 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
21 of 48 (43.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

ace e993da4d9a7466909b4770b20324cfa09e00cb4942ac9fc96b87acf187fc8106

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments