LOA-DHL-Express-EN-V18.exe

Classification: Malicious

LOA-DHL-Express-EN-V18.exe is a malicious file sample. Linked to Xloader malware. Reported by 3 threat sources, last seen 2026-05-20.

Detection summary

  • 0 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: XLOADER (S1207)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Formbook Triage 2026-05-20 11:20:33 2026-05-20 11:20:33 malicious-activity S1207 XLoader
Formbook MalwareBazaar Abuse.ch 2026-05-20 11:19:47 2026-05-20 11:19:47 malicious-activity S1207 XLoader
Generic Malware Hybrid-Analysis 2026-05-11 13:45:05 2026-05-11 13:45:05

Tags

formbook discovery execution rat spyware stealer trojan

Sample information

Filenames
LOA-DHL-Express-EN-V18.exe, Quote_QOT_26_05_163699.exe
File type
PE32 executable for MS Windows 6.00 (GUI), Intel i ...
MD5
063b975a26ef55888d120d6cfe23ca10
SHA-1
ea6a20d0f79ed6ac7fa64e2a9d4b40b445348ba4
SHA-256
9fcba21de2fba1e9eee5e341ae7da8601fd1e30ab3d2b3954586b96586c7cb0b
First indexed
2026-05-11 12:56:23
Last updated
2026-09-02 15:27:46