LOA-DHL-Express-EN-V18.exe
Classification: Malicious
LOA-DHL-Express-EN-V18.exe is a malicious file sample. Linked to Xloader malware. Reported by 3 threat sources, last seen 2026-05-20.
Detection summary
- 0 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: XLOADER (S1207)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Formbook | Triage | 2026-05-20 11:20:33 | 2026-05-20 11:20:33 | malicious-activity | S1207 XLoader |
| Formbook | MalwareBazaar Abuse.ch | 2026-05-20 11:19:47 | 2026-05-20 11:19:47 | malicious-activity | S1207 XLoader |
| Generic Malware | Hybrid-Analysis | 2026-05-11 13:45:05 | 2026-05-11 13:45:05 |
Tags
formbook discovery execution rat spyware stealer trojanSample information
- Filenames
- LOA-DHL-Express-EN-V18.exe, Quote_QOT_26_05_163699.exe
- File type
- PE32 executable for MS Windows 6.00 (GUI), Intel i ...
- MD5
063b975a26ef55888d120d6cfe23ca10- SHA-1
ea6a20d0f79ed6ac7fa64e2a9d4b40b445348ba4- SHA-256
9fcba21de2fba1e9eee5e341ae7da8601fd1e30ab3d2b3954586b96586c7cb0b- First indexed
- 2026-05-11 12:56:23
- Last updated
- 2026-09-02 15:27:46