MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 382a91eea39fcc9fbd0325a7c6e5628b8ef3a3ef1529208e8d7aadc0cf657d0d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 382a91eea39fcc9fbd0325a7c6e5628b8ef3a3ef1529208e8d7aadc0cf657d0d
SHA3-384 hash: 0bbad6ff1092aa956ee51559a319d57018ef64f3aa11830f6c09682b7d12352ceb63be60ea53b8a2bf19b3c88a2abe64
SHA1 hash: 012db3a8ef0ca80aabd79027ea03231aa7730a1d
MD5 hash: fa440177f7db5fa5d57801463044f654
humanhash: alanine-winner-oklahoma-equal
File name:OUTSTANDING PAYMENT STATEMENT OF ACCOUNT MARCH TILL DATE pdf.zip
Download: download sample
Signature AgentTesla
File size:374'770 bytes
First seen:2020-06-26 00:17:27 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:hm007sQYFHWK2lE5njHQ+0+IggeeQF+SiCofDFw7h658y8LT3w46/v8Pqp/X:X07sQuHx2lAnjwVjzQoHfBn8Nfuv8Pqt
TLSH DC84231017792A8AF573C53D49F8A7FAD8E3ED36341298B943B0A9285042F81D90DEDB
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
75
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Infostealer.Fareit
Status:
Malicious
First seen:
2020-06-26 00:19:04 UTC
AV detection:
35 of 48 (72.92%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 382a91eea39fcc9fbd0325a7c6e5628b8ef3a3ef1529208e8d7aadc0cf657d0d

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments