MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c4db6cb6af803f273eb060a62892bfd6203d567c49fb80d2e8c5e3e58055a660. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry

Intelligence 1 File information 3 Yara Comments

SHA256 hash: c4db6cb6af803f273eb060a62892bfd6203d567c49fb80d2e8c5e3e58055a660
SHA1 hash: 9b95acffe5d559edd7b930ce8521efb0fd27cba4
MD5 hash: 2a04bf0604f56256bcecaeab2350225d
File name:shipping
Download: download sample
Signature GuLoader
File size:26'120 bytes
First seen:2020-05-22 14:34:00 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 384:KvymCANXWJdQ1qJdOtYHwLBDb/H+JfTbdWIrbOQh27uIMfoUdrYee:KDNGJdQ1qJdOEGB/H+R7h5IjqrYee
TLSH 70C2F1AB2B7D57ACF6E4097A8872CCA5FD3A1C323C425761B732462C94335A8D03B6C5
Reporter @jarumlus


Mail intelligence
Trap location Impact
CH Switzerland Low
Global Medium
# of uploads 1
# of downloads 20
Origin country FR FR
ClamAV PUA.Win.Packer.ProtectSharewar-2
VirusTotal:Virustotal results 9.38%

File information

The table below shows additional information about this malware sample such as delivery method and external references.



zip c4db6cb6af803f273eb060a62892bfd6203d567c49fb80d2e8c5e3e58055a660

(this sample)

Delivery method
Distributed via e-mail attachment