MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 20d092237d54f81075c6dfe5cdaf24208fa12daa24a219672b2b5ffc15bddc1d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 20d092237d54f81075c6dfe5cdaf24208fa12daa24a219672b2b5ffc15bddc1d
SHA3-384 hash: 2547db6a60e11d9d09942d9e1c3262414ccba6ef25328c15af98e1004efb4fd7fcbe83111f518fcb6de25c2754d7bcd5
SHA1 hash: 00409e6c3074993876c1476ece99203c6c1fdda8
MD5 hash: ff2d25fca0a36c150e3d9bef557da2a1
humanhash: magnesium-violet-fruit-skylark
File name:Purchase order # CT1806619522.r2.zip
Download: download sample
Signature GuLoader
File size:30'352 bytes
First seen:2020-05-25 07:08:32 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 768:0c9p/rSqFCoA1IXOQeUUmcdT6bjasp0PkGJh5ZYg1:Dn/rMoA1iO406naTcGH71
TLSH 0DD2E267E3321348FEB1764D30AAB8853E021D40BDECB145A659BD9E68CAE018BB4129
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
1
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Dynamer
Status:
Malicious
First seen:
2020-05-25 07:19:01 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
17 of 31 (54.84%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 20d092237d54f81075c6dfe5cdaf24208fa12daa24a219672b2b5ffc15bddc1d

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments