Cybersecuritynews
GuLoader Exploits Polymorphic Code and Cloud Hosting for Malware Delivery
First seen 10 Feb 2026, 16:42 UTC
•
•82% similarity
•32.9
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
GuLoader, also known as CloudEyE, has become a persistent threat in cybersecurity, functioning primarily as a downloader for secondary malware payloads. It retrieves and executes various malicious software, including the Remcos Remote Access Trojan and information stealers like Vidar and Raccoon Stealer, utilizing polymorphic code and trusted cloud infrastructure to evade detection.
ThreatCluster AI
How this analysis works
Timeline
2026-02-10
GuLoader identified as a persistent threat
2026-02-10
GuLoader's capabilities detailed in cybersecurity articles