MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c56e3b354b7cce95f09d642c243ee9851b314028683f3c0e2fa0ce1c8a929bb8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: c56e3b354b7cce95f09d642c243ee9851b314028683f3c0e2fa0ce1c8a929bb8
SHA3-384 hash: 6ee99c1ad1ac1f3456c14012c0ee911d7bcc5d37e1ee7e8789bb78343d05b9c07f623a413a4fa32ce94b0ceec668c505
SHA1 hash: 9ce0d21679dfca989d70677ad09265d60a3e7694
MD5 hash: ffcbc73f372e91fc6ea51b6e3f4605f5
humanhash: sixteen-georgia-coffee-iowa
File name:Product Specification.jpg.ace
Download: download sample
Signature GuLoader
File size:28'993 bytes
First seen:2021-02-19 09:25:26 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 768:TTA/mxEjEH71sUYXHIICUOQJ978/NXqUddpAwZY8StNSC:M+EQb1NYXHIIDJjUdpB2l
TLSH F5D2E1F4A06D3C5B0E15EA9AF60DE184004ED38A1CDBDB4D5BFB2761D1BA753362A200
Reporter GovCERT_CH

Intelligence


File Origin
# of uploads :
1
# of downloads :
92
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2021-02-16 11:30:25 UTC
AV detection:
8 of 29 (27.59%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

ace c56e3b354b7cce95f09d642c243ee9851b314028683f3c0e2fa0ce1c8a929bb8

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments