MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4ec461c00d6743c053bb918caf29f2610805a8e6005fbf42b746e9033002a83e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 4ec461c00d6743c053bb918caf29f2610805a8e6005fbf42b746e9033002a83e
SHA3-384 hash: 419728313c131e0048649f5981df1d50277f293b3d83fca072fe57571955143b047d8a4cdfd3f0b0aa931f34d0bb3ede
SHA1 hash: 3b9b1659719683cd6cb3d6e827d84963ff5758c2
MD5 hash: 82348f9a22e94a680eecab3376570dec
humanhash: seven-timing-triple-salami
File name:TNT Consignment Documents.ace
Download: download sample
Signature GuLoader
File size:27'713 bytes
First seen:2020-05-26 14:53:44 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 768:Hm1uUfmhj6w9N4m1p//FZU/oR3Z9OORXQimDMsTvx:Hm1d29br/nfRdXQLI+
TLSH F3C2F1D0FA99D34F8C56998ADB80E9A4EB3C5B188294EF0178CB54E8C0C9C937C76343
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Fareit
Status:
Malicious
First seen:
2020-05-26 15:35:40 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
19 of 48 (39.58%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

ace 4ec461c00d6743c053bb918caf29f2610805a8e6005fbf42b746e9033002a83e

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments