MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7b6851070b0fe114e9a5f475afedba1729251ca694a223ffccb6dad12c340120. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 7b6851070b0fe114e9a5f475afedba1729251ca694a223ffccb6dad12c340120
SHA3-384 hash: 1f285ce1dde070f8de7eb3755e6a81a81ebbcc0095a1d30985a60f75dd8e57adfb7f96bfcc571e16621ab3c701d38a1f
SHA1 hash: 2ce5f74137e4b3cd3edf5949f59b14721c021f78
MD5 hash: bb238138a1ec08119d3af9a9fdb4afa8
humanhash: purple-carpet-helium-fix
File name:CIF_SPECIFICATION.gz
Download: download sample
Signature GuLoader
File size:27'338 bytes
First seen:2020-05-25 06:12:37 UTC
Last seen:Never
File type: gz
MIME type:application/x-rar
ssdeep 768:iPtUPfCu7+HVj3lRMhWnOdVHVvPVg2ZEissYt:kODqV3LcsO5vdyOYt
TLSH 72C2F1ED1C7D8CB484E8D91C118E0F6BD52CE567C0CEA471577A1C3B6A38A8AC809C97
Reporter jarumlus
Tags:GuLoader

Intelligence


File Origin
# of uploads :
1
# of downloads :
67
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-25 05:55:57 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
10 of 48 (20.83%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

gz 7b6851070b0fe114e9a5f475afedba1729251ca694a223ffccb6dad12c340120

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments