MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4f1ec999c1d0d7fa9cb12aaceb0d3efb58d846b315fad36c50c9bdb19804dc0a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 4f1ec999c1d0d7fa9cb12aaceb0d3efb58d846b315fad36c50c9bdb19804dc0a
SHA3-384 hash: f6a35f95caa95cf162f026c1583cee0bb9356cc22ac6b816293d3edd80aa747c0d2f255085dcbb7ef13a902f30cf4fd8
SHA1 hash: ff441466401e487c1955b25ac861429fc6da3bdb
MD5 hash: 62dee7e4f577a735041eeed07df65a3e
humanhash: eleven-mexico-charlie-three
File name:Bank transfer credited to your IBAN.zip
Download: download sample
Signature GuLoader
File size:25'611 bytes
First seen:2020-05-12 05:08:56 UTC
Last seen:2020-05-12 09:05:11 UTC
File type: zip
MIME type:application/zip
ssdeep 768:h0N290xoCN3OKlwtEYId1XKHGXBMO2VfYXvU0k:30x0KGtDS16H6MFRYXvU0k
TLSH 17B2D022AD8CE06A1CD325A21A91A95EA155FB802F54C4FE89E8601DEF51F638B33D03
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
2
# of downloads :
74
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Fareit
Status:
Malicious
First seen:
2020-05-12 04:55:31 UTC
AV detection:
27 of 48 (56.25%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 4f1ec999c1d0d7fa9cb12aaceb0d3efb58d846b315fad36c50c9bdb19804dc0a

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments