MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cc64f5aa70cbfa61c84f83599751e3b7bec9491f97784ba405e634ec91ff5585. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: cc64f5aa70cbfa61c84f83599751e3b7bec9491f97784ba405e634ec91ff5585
SHA3-384 hash: 9f47e338a61263ad3fbb7c90a12860f8c458c54aeca44ad9ed760daf5dcf87c320c3cd857b9178b17ec2c09b93cb5d5d
SHA1 hash: ecd0fc314761d78267e9fb463bbf816de19545b0
MD5 hash: ffbc025c265298dc3b84a27e91e80a0c
humanhash: sweet-south-carolina-maryland
File name:Payment Swift513835193071916.ace
Download: download sample
Signature GuLoader
File size:30'888 bytes
First seen:2020-05-26 09:38:35 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 768:Vn9AKeU75koO2UR4XKJjC+I/E03rAbRSfeJ/mJ5Kh6x:Vn9qUVkoWR4XKJiEV8GJ/mJ5Kh6x
TLSH E3D2022C57FB7745AF889B819E60F0102CF457BE6612064FAE449B18E08C6574ACCD1F
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-26 10:36:59 UTC
File Type:
Binary (Archive)
Extracted files:
7
AV detection:
23 of 48 (47.92%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

ace cc64f5aa70cbfa61c84f83599751e3b7bec9491f97784ba405e634ec91ff5585

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments