MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 eb82cb5993fdd39069c6c8d482fe659174dee0c7d5525e32e1e257ec0f884c19. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Loki


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: eb82cb5993fdd39069c6c8d482fe659174dee0c7d5525e32e1e257ec0f884c19
SHA3-384 hash: c05422eda8d72facfc7bd48c5eb8b17e1a36ce3fedac1c3b322534916e6bfe91cd2b57195f728c20c8434e287fcd002c
SHA1 hash: 948e87196bd4125c752674f84db4e2187440e985
MD5 hash: 034b44c77abb558c3dc229419a608e07
humanhash: summer-eight-iowa-jig
File name:ZAHTJEV ZA PONUDU 14-01-2020·pdf.zip
Download: download sample
Signature Loki
File size:207'132 bytes
First seen:2021-01-14 20:21:34 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 3072:AMTmdDlZUWx8CnFXP7Ub6rrYRouR2l4SAMC0lPwzbI7/zURIL3cbhOu0mLks6SIP:kdEWx8sm6fYRo670lh7/zUGsbhOb4mS6
TLSH 401423E3343D310B5E29C0EBF91151273D99BED3694E38DB654D444C28BA298DAF8AF4
Reporter abuse_ch
Tags:geo HRV zip


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: mail.bengiamein.tk
Sending IP: 150.95.113.180
From: Sveučilište u Zagrebu <unizginfo@unizg.hr>
Subject: ZAHTJEV ZA PONUDU (Sveučilište u Zagrebu) EUI894/BU466
Attachment: ZAHTJEV ZA PONUDU 14-01-2020·pdf.zip (contains "ZAHTJEV ZA PONUDU 14-01-2020·pdf.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
156
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Backdoor.Androm
Status:
Malicious
First seen:
2021-01-14 18:27:02 UTC
AV detection:
17 of 46 (36.96%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

Loki

zip eb82cb5993fdd39069c6c8d482fe659174dee0c7d5525e32e1e257ec0f884c19

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments