MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2a2e7edf00ea392709fc23615056e6faa81235bdc90808c857d3ea934184fe54. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 2a2e7edf00ea392709fc23615056e6faa81235bdc90808c857d3ea934184fe54
SHA3-384 hash: e0723176b249c73a10e2d41c79a86faeaf9ef1788d4bd329af94a965c8c02fcdc36b81488b2587077c89d52d4c7f72af
SHA1 hash: c1ee53d9584a9adcd42cbba1252e823deaba184f
MD5 hash: 25a382befd68e445b310aab405bccd1f
humanhash: fruit-pasta-diet-montana
File name:Inquiry.zip
Download: download sample
Signature GuLoader
File size:34'173 bytes
First seen:2020-06-10 12:35:47 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 768:2qzE+h8AyalB0soNlbpY231hB0X90RwzG1mIRV6isveSc:2qzE+hGQBroNlbekh9Cv7v4
TLSH 1FE2E1D5CDF84007E7E0DDAF9BF8C560503F895C482294303982B46EEC72DC7CA959A9
Reporter abuse_ch
Tags:GuLoader zip


Avatar
abuse_ch
Malspam distributing GuLoader:

HELO: srv189.svservers.com
Sending IP: 46.17.41.31
From: Louis Zavod <info@mrgladvogado.com>
Subject: Inquiry - URGENT
Attachment: Inquiry.zip (contains "Inquiry.exe")

GuLoader payload URL:
https://systemsintegrator.cf/bin/fit4.bin

Intelligence


File Origin
# of uploads :
1
# of downloads :
120
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-06-10 12:37:07 UTC
AV detection:
6 of 48 (12.50%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 2a2e7edf00ea392709fc23615056e6faa81235bdc90808c857d3ea934184fe54

(this sample)

  
Dropping
GuLoader
  
Delivery method
Distributed via e-mail attachment

Comments