MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d2a8f8ac4e31599db6b55aa90c81ff39e168e2a148393e91defa5c538f5d6ff3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GCleaner


Vendor detections: 13


Intelligence 13 IOCs YARA File information Comments

SHA256 hash: d2a8f8ac4e31599db6b55aa90c81ff39e168e2a148393e91defa5c538f5d6ff3
SHA3-384 hash: cbf8b4f0886568008be8a578450cde03fd9a55fc7ba962a8258b71e05869a584c9614d6e01ab916ae427dfa256199a66
SHA1 hash: 7da14efc11e8407eac7f77b506e096c5e23ad8a9
MD5 hash: ca648943c788e65d7102e0e776a00e94
humanhash: muppet-robin-berlin-ink
File name:ca648943c788e65d7102e0e776a00e94.exe
Download: download sample
Signature GCleaner
File size:367'616 bytes
First seen:2023-07-31 07:23:36 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash e77d02e9488221765e4e1f3b49ccdb9b (1 x GCleaner)
ssdeep 6144:trO/0L/HkgRs0H8+KcLrCjMaE+O08Y/p6GBhXZ:E/0bEh1Sr0MfLqIGHX
Threatray 299 similar samples on MalwareBazaar
TLSH T18874BF42B684DC31F91455358D3AC2F9263EB8604F596BC377A87F6B6D323E29A32341
TrID 37.3% (.EXE) Win64 Executable (generic) (10523/12/4)
17.8% (.EXE) Win16 NE executable (generic) (5038/12/1)
16.0% (.EXE) Win32 Executable (generic) (4505/5/1)
7.3% (.ICL) Windows Icons Library (generic) (2059/9)
7.2% (.EXE) OS/2 Executable (generic) (2029/13)