MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 05131c6842be812a0925a65662b1e0c6ac5ac25327352be01c18169618aaeab5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 05131c6842be812a0925a65662b1e0c6ac5ac25327352be01c18169618aaeab5
SHA3-384 hash: 4e0ae10fbcab2fa1c86c930cb369d742ee52faa2be234496c7c24ce0f650408b468d11f1117d670b081519b924b18d8b
SHA1 hash: cd1d894c5a0aa265023515639cd3c00f3ece67ea
MD5 hash: 6d4b1e817357f6050257c0e989c2973a
humanhash: double-cold-sad-jersey
File name:TNT Original Invoice.ace
Download: download sample
Signature GuLoader
File size:24'204 bytes
First seen:2020-05-22 14:26:32 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 384:pdDbE/kwhDJTylToVA6/7eW7vVqwqGKPVd09qOnz8ZOysUb4Ew6dH4/bF+tbTEMe:zbE/kwhBylMK6KuEw0Pk4Q2Yx+Gx29xQ
TLSH 13B2F1C3B7CD46A4EB40A2AB490A55BC59ABBD1642DB2C587BDA40CF827FC407631339
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
59
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-22 14:35:49 UTC
AV detection:
17 of 31 (54.84%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

ace 05131c6842be812a0925a65662b1e0c6ac5ac25327352be01c18169618aaeab5

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments