🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4e01866db5ec52866e21eac49c4135d62fe712d8b64cee07bd755a2accf0340b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GCleaner


Vendor detections: 10


Intelligence 10 IOCs 3 YARA 10 File information Comments

SHA256 hash: 4e01866db5ec52866e21eac49c4135d62fe712d8b64cee07bd755a2accf0340b
SHA3-384 hash: 3c69cba107c68b9a83963f49e6cfe7b25beb3092a33b1ad9b0c1e0bd8c865f012dd029cd6b021f630c68051c1706ed8d
SHA1 hash: 06eb7e31bae25f0247f0c3b9d4e3cd8fbc529d9b
MD5 hash: 6402e1483733ff33c0e0b7e8856d3d50
humanhash: cold-hotel-bakerloo-robin
File name:6402E1483733FF33C0E0B7E8856D3D50.exe
Download: download sample
Signature GCleaner
File size:415'744 bytes
First seen:2021-08-13 18:05:24 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash cc4caabe2c1a9c923331965c9764375d (3 x Pitou, 2 x RedLineStealer, 2 x GCleaner)
ssdeep 6144:Qgb8zQt6txzTlV+/6I79o5kXlAnRxMSCZ0s6VqEs5NJUwxC8YaDl2HUFli3kLmb:yQtyViSI72El+Rx5DsVhxfuui3kLmb
Threatray 4'278 similar samples on MalwareBazaar
TLSH T1A394AE30A7A0C035F4F312F845BA937CA92D7EA1973451CF92E52AEE16346E4AC31797
dhash icon 8eb1ecccb6dcf8a7 (1 x GCleaner)
Reporter abuse_ch
Tags:exe gcleaner