MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 1b0793480d58a8b2bfff9751f4973dfab3dd7e1728c09a3ad70f18ca9d649240. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry

Intelligence File information 3 Yara Comments

SHA256 hash: 1b0793480d58a8b2bfff9751f4973dfab3dd7e1728c09a3ad70f18ca9d649240
SHA1 hash: 58417716c2b564463cedc95d9b186be3169dd4db
MD5 hash: 9e0ef2fca3926831a774c9bc6748e6d9
File name:9e0ef2fca3926831a774c9bc6748e6d9.exe
Download: download sample
Signature GuLoader
File size:90'112 bytes
First seen:2020-05-22 10:01:06 UTC
Last seen:2020-05-22 10:51:57 UTC
File type:Executable exe
MIME type:application/x-dosexec
imphash e27a07e994046d150c88890bda5e84b0
ssdeep 768:2uYlVkXXNj94IjgzfGmj5+IlY9Y1xYJPjpMhfgI7hA/P1kpSDpkII3L:DYg91gngI1nYJLpMhfwTGIo
TLSH C8930A13F594DCA9C948CAF1991286E015FFBC321E660F4B74983B6C3A339C26DA9357
Reporter @abuse_ch
Tags:exe GuLoader

GuLoader payload URL:


Mail intelligence No data
# of uploads 2
# of downloads 22
Origin country FR FR
VirusTotal:Virustotal results 25.00%

File information

The table below shows additional information about this malware sample such as delivery method and external references.

Web download


Executable exe 1b0793480d58a8b2bfff9751f4973dfab3dd7e1728c09a3ad70f18ca9d649240

(this sample)

Delivery method
Distributed via web download