MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4f76eb4ca8025c0dc5567aef8a008a40a497d3fd8fd821ba2f26c875e0e7801c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 4f76eb4ca8025c0dc5567aef8a008a40a497d3fd8fd821ba2f26c875e0e7801c
SHA3-384 hash: bd020fb338b23da75cfe62ab70212344ff3faf4bb744cd5d21f2191f4792f5b4edcf02cf87f40187fc73d9433d69dde7
SHA1 hash: 75c941c9c80d9001745facabf546e114eaef870d
MD5 hash: 691a958b1b54d168025f34f1cbd76a7a
humanhash: ink-fish-speaker-dakota
File name:INV&PL_pdf.zip
Download: download sample
Signature AgentTesla
File size:489'425 bytes
First seen:2020-07-30 10:26:46 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:Dsn1Et7KOLcHzA9K9dQGR2nqWmD+No/iUllLK97KiKAeLEfS:Dss7vLVPGvWmDwo/a7lKAQeS
TLSH 45A42378CD199D670C54266245F1B509ECF3BA2CE5B44423C1AA6FED2F48F942EE3A34
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.DataStealer
Status:
Malicious
First seen:
2020-07-30 09:38:46 UTC
AV detection:
24 of 29 (82.76%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 4f76eb4ca8025c0dc5567aef8a008a40a497d3fd8fd821ba2f26c875e0e7801c

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments