MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 e1db760e041189ccb6fc5bd51d8dcef242d7402c5fa0ecb4b3b2155356408078. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



GuLoader


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: e1db760e041189ccb6fc5bd51d8dcef242d7402c5fa0ecb4b3b2155356408078
SHA3-384 hash: 566581f45da9b5df30b95abe6731385f463d1f80094d42f85878d1aab58be851282eb4a4b09a83d7fbe4fabba9b1b132
SHA1 hash: 5eb1c08e71a8b96d2131f5f8ffa71120e8f28f02
MD5 hash: 7ecb4ad32fdbb3c334943cf3892b7f47
humanhash: batman-item-hot-oven
File name:DHL Shipment Doc.ace
Download: download sample
Signature GuLoader
File size:48'824 bytes
First seen:2020-06-05 19:04:24 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 768:gv1JcqVajFzj76Nogq14gFVryezLOsdi7m4pcmxWp5SMzd0TYWQbHjr2jiNb/52N:gXcqWFzyOX1LeALOme5ymxy5SsHWAHjI
TLSH E92302017C7A431E9CA9B1DA1EFE3905C2E4D88B05819517A5B7F9235B14FB3637BC12
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Vebzenpak
Status:
Malicious
First seen:
2020-06-05 19:05:04 UTC
AV detection:
18 of 31 (58.06%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

GuLoader

ace e1db760e041189ccb6fc5bd51d8dcef242d7402c5fa0ecb4b3b2155356408078

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments