MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6debd443707e761c1bb382df651bc445c7cdb2aa558ed5c0db4fdf39682adc0d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 6debd443707e761c1bb382df651bc445c7cdb2aa558ed5c0db4fdf39682adc0d
SHA3-384 hash: 693d7af6ae7ed41c0f6bb7d260c48d909469a1f9a5d804c27b33bbac6c708e4ff2388deca89def95f024d45c3101e6db
SHA1 hash: d36fccda88071059d09bb60b78ca679f54d85c94
MD5 hash: 263f20e12f0bc3268c61ec1b88ba24da
humanhash: lake-artist-tennis-triple
File name:Listahan ng Kargamento 00002033421173_11062020.7z
Download: download sample
Signature AgentTesla
File size:414'116 bytes
First seen:2020-06-12 06:29:14 UTC
Last seen:Never
File type: 7z
MIME type:application/x-rar
ssdeep 12288:JPCEx4jS9fPkURenos0Zt8tC2u6bnG/wD97W+:JPt4jmf8URiosEt8tC96bnUM5W+
TLSH DC9423F0BA233D64F5FAA9ACC34E77910BA34C2C15561CCE36A01DA5E59E54B201F7E8
Reporter abuse_ch
Tags:7z AgentTesla


Avatar
abuse_ch
Malspam distributing AgentTesla:

HELO: mail.ispcf.ro
Sending IP: 46.97.75.130
From: Eduardo Villar <eduardovillar3@gmail.com>
Subject: Listahan ng Kargamento: 00002033421173
Attachment: Listahan ng Kargamento 00002033421173_11062020.7z (contains "Listahan ng Kargamento 00002033421173_11062020.exe")

AgentTesla SMTP exfil server:
mail.ductoslimpios.com.mx:587

Intelligence


File Origin
# of uploads :
1
# of downloads :
66
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Spyware.Negasteal
Status:
Malicious
First seen:
2020-06-12 06:31:05 UTC
AV detection:
13 of 28 (46.43%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

7z 6debd443707e761c1bb382df651bc445c7cdb2aa558ed5c0db4fdf39682adc0d

(this sample)

  
Dropping
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments