MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5c84fead84918ec7d6b88a2a8cabdbf8f5abf15f15a4c179676bfa03d52fb4b7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 5c84fead84918ec7d6b88a2a8cabdbf8f5abf15f15a4c179676bfa03d52fb4b7
SHA3-384 hash: 5803774d942998f8572e9634595862df0373963b5bc7442abff5be8719d66d670e433a1731910169065142294fa383d2
SHA1 hash: 627fee2341328adfc837d1364d6decb6bf0ce688
MD5 hash: c759e2555941e197377d1e13e372b40c
humanhash: sweet-skylark-wolfram-aspen
File name:Payment#054.pdf.zip
Download: download sample
Signature GuLoader
File size:24'686 bytes
First seen:2020-05-13 05:13:12 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 768:uQy95LzSqJbEUjJqJFQpKkICUV97q9dUZ:u93njfFqJF0kZ
TLSH 2BB2E121CFEB8067F0946D3179C3506A0A29F6471FA107C1DEA39A9F1F449E9AF3A40D
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
1
# of downloads :
82
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-05-14 04:36:39 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
27 of 48 (56.25%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 5c84fead84918ec7d6b88a2a8cabdbf8f5abf15f15a4c179676bfa03d52fb4b7

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments