MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8b9d5f8782d3432c3ec300c461eb146daa7db5ceb397bec7e88b356537112b75. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 8b9d5f8782d3432c3ec300c461eb146daa7db5ceb397bec7e88b356537112b75
SHA3-384 hash: b36d427d122201560afa49d28172af449593916fceb589c09cc2a7726882624bcff16fc71dcabee6816a164007de1039
SHA1 hash: fbcb4223128fedb0aaa900fccf1a6bc2468b8d87
MD5 hash: 35d3846526deaf3b6d6e6fed5f51226a
humanhash: virginia-skylark-washington-football
File name:NEW ORDER.zip
Download: download sample
Signature GuLoader
File size:29'527 bytes
First seen:2020-03-19 13:36:09 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 768:Rmf0JvO1P3P3QQSFzr1DpyvwJwgLLxe8B:Rmf001fmzpDpyYdLk8B
TLSH 9BD2E15ADE8EAE6F8C456ED19AA70CFC154616EA5C268091ACFB28212D330D4C6F4F21
Reporter cocaman
Tags:GuLoader zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
81
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-03-19 20:33:00 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
24 of 31 (77.42%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip 8b9d5f8782d3432c3ec300c461eb146daa7db5ceb397bec7e88b356537112b75

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments