MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6b89b463d444ee7dcbb2abfe879dc1085c4d1925f1affd678360856f5bffc6bd. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 6b89b463d444ee7dcbb2abfe879dc1085c4d1925f1affd678360856f5bffc6bd
SHA3-384 hash: e5751481a9cd9a044855410a83948f2e69ff7f3144dfcfc0d5b5ceb212ee03e6eb8dd8fbe97c1b56a07679ecd9059795
SHA1 hash: 707578ad2a569f4208d1b4b318afd8fe2cb3431a
MD5 hash: 48ce3e9f274d2feba45e76bcb3deba49
humanhash: early-zulu-utah-summer
File name:scan_004768.pdf.zip
Download: download sample
Signature GuLoader
File size:30'677 bytes
First seen:2020-05-13 17:23:27 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 768:BFYziOdJ6u9ZxMsgfwxSfDfGVpm3tWslSgZ2:BFYx0axMXwxSLgqtWRgZ2
TLSH BAD2F1FD662251484130C43569E897F82A27A1471622AE76D3FCF77FE08CD91C36962D
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Dynamer
Status:
Malicious
First seen:
2020-05-13 20:01:00 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
18 of 30 (60.00%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 6b89b463d444ee7dcbb2abfe879dc1085c4d1925f1affd678360856f5bffc6bd

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments