MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8da8a182fb7edf26b40e0750a4cd77476c5b52b8ed742507f956b5e3c3268b40. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 8da8a182fb7edf26b40e0750a4cd77476c5b52b8ed742507f956b5e3c3268b40
SHA3-384 hash: c4b72db8f78d6e50675990d11163ce5e326a42dcc5125483020850023a29e1dcd4852a69a8b8191b1f106ce71d50472b
SHA1 hash: 7c56e3375322360e7b502c7bbef8cca5cab5e056
MD5 hash: 8d3f2328403e689278ef20117aeb1891
humanhash: lion-purple-iowa-sweet
File name:PI 229156.pptx.gz
Download: download sample
Signature AgentTesla
File size:394'560 bytes
First seen:2020-08-20 08:21:54 UTC
Last seen:2020-08-22 00:34:39 UTC
File type: gz
MIME type:application/x-rar
ssdeep 6144:vvcQzb7eDsNUPgOGl49wyGVYuHy1BxIMl28hpj881k97kn0yFGj6qkCf270q3Q3L:vvcQ6mBe9q+uHy1BxICu9QbFqB273wks
TLSH B284235DD5453CADE0AE0558FAA7EC5A41C267EB5A28A83A01CB980DC53FDDB2183CF1
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
3
# of downloads :
84
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Taskun
Status:
Malicious
First seen:
2020-08-20 03:34:06 UTC
AV detection:
18 of 47 (38.30%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

gz 8da8a182fb7edf26b40e0750a4cd77476c5b52b8ed742507f956b5e3c3268b40

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments