MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7130f8aa4584d04d6f874e5423a822c8d69ae9fdb584b7b5fd3735a9a91e4b30. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 7130f8aa4584d04d6f874e5423a822c8d69ae9fdb584b7b5fd3735a9a91e4b30
SHA3-384 hash: fe8cfa493253d1efc086fdbd393a9120458b4d8335c3124ac74e5628c1e67ca471872a4a8a2f2b10f5eaf4997b205b9e
SHA1 hash: ea21a490b8d94fd72649648be9828d60e1e4c997
MD5 hash: c787dd82d015e100031bcc0b06faf6a0
humanhash: freddie-moon-johnny-nevada
File name:dhl_doc8532967438.zip
Download: download sample
Signature AgentTesla
File size:393'962 bytes
First seen:2020-07-03 00:20:18 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:i0tGFgET4OO6UY15FZWTU+mt/E1DtG7YxHqz4zamBszZSbzi/73a/Pu4tN:BsFhO/EhG1pauKz4zQQm/G/P
TLSH 538423FA532640B57BE5388C44B30F09395F6FD7F8E3A4E9BB2246F41CD9960B6641A0
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
69
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Avemariarat
Status:
Malicious
First seen:
2020-07-03 00:22:05 UTC
AV detection:
20 of 29 (68.97%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 7130f8aa4584d04d6f874e5423a822c8d69ae9fdb584b7b5fd3735a9a91e4b30

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments