MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 56c8675137f71c4f50b51a97dd8ad49eb5806299b68247dbf06850260d9956e9. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 56c8675137f71c4f50b51a97dd8ad49eb5806299b68247dbf06850260d9956e9
SHA3-384 hash: 9f5baf8aa68de2451be9cf713626d0234de6b1211e0658841afa84c03f00d43e50647b8965235c6ca7ea2e0bf38afe9d
SHA1 hash: 2ca77714843139794d08246c83515ec242d17d47
MD5 hash: af94d70aa77ec14950e4204890baa719
humanhash: eight-lake-iowa-sierra
File name:original shipping docs.zip
Download: download sample
Signature GuLoader
File size:43'962 bytes
First seen:2020-06-05 13:26:55 UTC
Last seen:2020-06-05 13:40:30 UTC
File type: zip
MIME type:application/zip
ssdeep 768:6CRxiRQdSjKzBKhPZVqaLgztYdU/be5Q71m5o1rdKzOY7VAMSmNIAQbHDg+rVSlT:Tx54fVwO6Te5buIOYBA7bHvrVSrYsT
TLSH 5413024C530A554CA346A3B3A5A50E5BF393606DC0EBA779FE0ACE475C9F021643A692
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
3
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-06-05 13:29:22 UTC
AV detection:
27 of 48 (56.25%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 56c8675137f71c4f50b51a97dd8ad49eb5806299b68247dbf06850260d9956e9

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments