MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5e0f8ab7345f3b6c91a2c3e968a54d123764127266bedd1ef8d5e4c795bb3b4b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 5e0f8ab7345f3b6c91a2c3e968a54d123764127266bedd1ef8d5e4c795bb3b4b
SHA3-384 hash: ee688fd221b2e66c455892cc8569089ca67c5eff4655e55deb756b5541099b8533284155833517f6b54bb0f3495f27f3
SHA1 hash: ddc953d82270202934dc6de70b4495af16838515
MD5 hash: 7fc13c9061a646fece8263956564bfc7
humanhash: friend-minnesota-cola-friend
File name:PO10029929.7z
Download: download sample
Signature AgentTesla
File size:413'569 bytes
First seen:2020-06-19 05:43:35 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:Ssh1tE7s3MJXrnHOtbXtPSZbEDw0p+fR3WyQ4wWndESTjTU4orvc6j+Zjf747liq:Sg1xcJXrHOB5yIDXARKreSigxMWliq
TLSH 459423F6AEE7098ADA29377FC1BA2F507F664AE023D63826854C346170ED505F18D4CB
Reporter abuse_ch
Tags:7z AgentTesla


Avatar
abuse_ch
Malspam distributing AgentTesla:

HELO: mailout06.t-online.de
Sending IP: 194.25.134.19
From: du.galsterer@t-online.de <du.galsterer@t-online.de>
Reply-To: du.galsterer@t-online.de <du.galsterer@t-online.de>
Subject: Urgent Order
Attachment: PO10029929.7z (contains "PO10029929.exe")

AgentTesla SMTP exfil server:
dies.gr:587

Intelligence


File Origin
# of uploads :
1
# of downloads :
69
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 5e0f8ab7345f3b6c91a2c3e968a54d123764127266bedd1ef8d5e4c795bb3b4b

(this sample)

  
Dropping
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments