MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 eb82cb5993fdd39069c6c8d482fe659174dee0c7d5525e32e1e257ec0f884c19. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
Loki
Vendor detections: 4
| SHA256 hash: | eb82cb5993fdd39069c6c8d482fe659174dee0c7d5525e32e1e257ec0f884c19 |
|---|---|
| SHA3-384 hash: | c05422eda8d72facfc7bd48c5eb8b17e1a36ce3fedac1c3b322534916e6bfe91cd2b57195f728c20c8434e287fcd002c |
| SHA1 hash: | 948e87196bd4125c752674f84db4e2187440e985 |
| MD5 hash: | 034b44c77abb558c3dc229419a608e07 |
| humanhash: | summer-eight-iowa-jig |
| File name: | ZAHTJEV ZA PONUDU 14-01-2020·pdf.zip |
| Download: | download sample |
| Signature | Loki |
| File size: | 207'132 bytes |
| First seen: | 2021-01-14 20:21:34 UTC |
| Last seen: | Never |
| File type: | zip |
| MIME type: | application/zip |
| ssdeep | 3072:AMTmdDlZUWx8CnFXP7Ub6rrYRouR2l4SAMC0lPwzbI7/zURIL3cbhOu0mLks6SIP:kdEWx8sm6fYRo670lh7/zUGsbhOb4mS6 |
| TLSH | 401423E3343D310B5E29C0EBF91151273D99BED3694E38DB654D444C28BA298DAF8AF4 |
| Reporter | |
| Tags: | geo HRV zip |
abuse_ch
Malspam distributing unidentified malware:HELO: mail.bengiamein.tk
Sending IP: 150.95.113.180
From: Sveučilište u Zagrebu <unizginfo@unizg.hr>
Subject: ZAHTJEV ZA PONUDU (Sveučilište u Zagrebu) EUI894/BU466
Attachment: ZAHTJEV ZA PONUDU 14-01-2020·pdf.zip (contains "ZAHTJEV ZA PONUDU 14-01-2020·pdf.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
156
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Threat name:
Win32.Backdoor.Androm
Status:
Malicious
First seen:
2021-01-14 18:27:02 UTC
AV detection:
17 of 46 (36.96%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Kryptik
Score:
1.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.