MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b74922c8a30921c6d08068a3ed69012ccc782d8bc05592663d70dff1198781e7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: b74922c8a30921c6d08068a3ed69012ccc782d8bc05592663d70dff1198781e7
SHA3-384 hash: de4a9aab3684f3e9c40f6498730b789ef1be9154d6bfceb77e812ddd098b2c9ecdc9f16ec3d2b3d4c759c1a5759e1be4
SHA1 hash: dc00d179edb4b09ba40b8f78b707f48c509fd504
MD5 hash: 51ba2275e014911fe7760b246d0f5831
humanhash: happy-delta-kitten-nine
File name:AWB20082020_pdf.zip
Download: download sample
Signature GuLoader
File size:14'873 bytes
First seen:2020-08-20 05:34:16 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 384:pZjeIyiY4pbdv9sn0aemgNP9AUmWSwq9rIO+uiWNN6:PvfJv9aj+tmWSFFmuj6
TLSH 7762E003DDB53F63D9584A78B094C260A45E0323AC96C9F69AC7EBCBBCE21184F34139
Reporter cocaman
Tags:GuLoader zip


Avatar
cocaman
Malicious email
From: "Purchase" <purchase@321.metalvxini.ml>
Received: from iux0.321.metalvxini.ml (iux0.321.metalvxini.ml [128.199.12.215])
Date: Wed, 19 Aug 2020 19:20:57 -0700
Subject: New Order Enquiry
Attachment: AWB20082020_pdf.zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
239
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Vebzenpak
Status:
Malicious
First seen:
2020-08-20 05:35:11 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
13 of 48 (27.08%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

zip b74922c8a30921c6d08068a3ed69012ccc782d8bc05592663d70dff1198781e7

(this sample)

  
Delivery method
Distributed via e-mail attachment
  
Dropping
GuLoader

Comments