MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d38f8c982de3e5e7b0837972845289d63bef4eddacf5c48e6ab61654042cd735. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: d38f8c982de3e5e7b0837972845289d63bef4eddacf5c48e6ab61654042cd735
SHA3-384 hash: a546465a647e975b6c7d35b6fd483804a05a71d202151a13527e02186ebc788292526f1b9a3d6e3918798f238a583d80
SHA1 hash: 9e7d5322f0f4d8086b2d4859e53de82fcfe9b156
MD5 hash: b19f31b86fc0d677c59e0beb278b7fee
humanhash: mars-pluto-glucose-glucose
File name:Payment Advice.zip
Download: download sample
Signature GuLoader
File size:26'473 bytes
First seen:2020-05-20 05:24:59 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 768:MwuMW8nPG8H7L14MqnEhjMfzITfuXmlexG:purSPNn18DfzauXmlexG
TLSH 35C2E1C9554569C33E70CE7F95BCCA27021221F4C24EA9EFB8671222D5578437E2CBCA
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
1
# of downloads :
80
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Dynamer
Status:
Malicious
First seen:
2020-05-20 05:35:33 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
24 of 48 (50.00%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip d38f8c982de3e5e7b0837972845289d63bef4eddacf5c48e6ab61654042cd735

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments