MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 c8326967f2a8665ea3fd392eb507a8d55671100379e087058f2f3f1bcd379cc4. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: c8326967f2a8665ea3fd392eb507a8d55671100379e087058f2f3f1bcd379cc4
SHA3-384 hash: 7b8123d225e456df9e50d095df649aad43435e4aa82e53c789ee69985c1e0a9615f42127d83b1d848270f89335dea03a
SHA1 hash: 931d68c5d321dbd8e01bafe855fbbfd918cae455
MD5 hash: 06f07f6f987a0b7b117c1d998240d260
humanhash: music-massachusetts-dakota-chicken
File name:TNT Shipment Document.ace
Download: download sample
Signature GuLoader
File size:45'833 bytes
First seen:2020-06-09 04:11:35 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 768:qtHyCpxj6rDOOIgMdZ63vRi3Zv/8gnGCNZMEfoNpPmFIIjr6WO83ZHn8MCNTtIbt:qgJvkaMEgKEgNpPmxr/HhGY1kmJt
TLSH 17230230EEE41F868737BB6171CB4E30606C616538D2594774C50D9AFB8897FC81694F
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
58
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-06-09 02:18:16 UTC
AV detection:
21 of 47 (44.68%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

ace c8326967f2a8665ea3fd392eb507a8d55671100379e087058f2f3f1bcd379cc4

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments