Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with GuLoader

Database Entry


Malware:GuLoader
First seen:2020-05-28 16:04:56 UTC
Last seen:2020-06-06 16:18:48 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2020-06-06 16:18:484455a6eb2a42974cab9a54d757b97f60Virustotal results 16 / 72 (22.22%) GuLoader38.132.124.231:443
2020-06-06 16:18:484455a6eb2a42974cab9a54d757b97f60Virustotal results 16 / 72 (22.22%) GuLoader38.132.124.231:443
2020-05-28 16:04:56e958679a3702ffe000a5d27e4a043bben/aGuLoader91.193.75.172:6970
2020-05-28 16:04:56e958679a3702ffe000a5d27e4a043bben/aGuLoader91.193.75.172:6970