MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 0efd3c1c0309a39621043d4a50972c19f00b7bb6290175c3ce78330096a37606. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 0efd3c1c0309a39621043d4a50972c19f00b7bb6290175c3ce78330096a37606
SHA3-384 hash: 7bc4f434a596a4e93c86ef927a028b620c9207919584f4aa2d85a456888afb35aa2da51e46829425e40cf90b23839460
SHA1 hash: bdf18f76336436ba7bd1297b97fdd71cc70bd07c
MD5 hash: b312718c09d2c2d5e5eb12b867429165
humanhash: vermont-nuts-oscar-saturn
File name:7709810102.zip
Download: download sample
Signature GuLoader
File size:60'895 bytes
First seen:2020-05-28 04:55:04 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 1536:YMBeAyQ9+y1/R6eTVUjFcll2i4JoXjucXCk:YMBeAyQ9+zEaor4SjD
TLSH ED53029C22A6783C384C653306EAD27AEA13155E072610DFA337BCE0B7980DD58BC396
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
1
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-28 01:57:17 UTC
File Type:
Binary (Archive)
Extracted files:
5
AV detection:
25 of 48 (52.08%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 0efd3c1c0309a39621043d4a50972c19f00b7bb6290175c3ce78330096a37606

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments