MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6e10f8fe2870afdcde708457034a88bc84ae82ec749078a667359c56f0fb1d35. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 6e10f8fe2870afdcde708457034a88bc84ae82ec749078a667359c56f0fb1d35
SHA3-384 hash: cfb6997b7da4b1d8511f32bee3dfe56a5849b1cd305996a74f1e3b02095cfeed06cfb589f4adab9eca207d9f79cf35a6
SHA1 hash: 5108f54e6c99c9f807c02b88f1ad486fa942eedc
MD5 hash: c2855ecccae6d06c9bfeffcbebf1e048
humanhash: georgia-ack-low-robin
File name:Purchase order #693641_3451483.R#$.zip
Download: download sample
Signature GuLoader
File size:59'262 bytes
First seen:2020-05-28 05:03:02 UTC
Last seen:2020-05-29 08:47:05 UTC
File type: zip
MIME type:application/zip
ssdeep 1536:GaxIIwVLePiSmLPVHLR99M8M8d4Yfp5lqXqI:GaaPdHLb9Mnz+5lBI
TLSH 6F430253D44E9996A629F27AB483D16B8D0421B0ECC9829121CF7B734BA0B0718BF5FD
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
7
# of downloads :
66
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Fareit
Status:
Malicious
First seen:
2020-05-27 21:34:42 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
28 of 48 (58.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 6e10f8fe2870afdcde708457034a88bc84ae82ec749078a667359c56f0fb1d35

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments