MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9b0d9a923617daf42df24b3c4cfaf5a7caf8cece9f995cadc3c184478f6fc9ba. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 9b0d9a923617daf42df24b3c4cfaf5a7caf8cece9f995cadc3c184478f6fc9ba
SHA3-384 hash: 25fcf9b5b720dc74c6a385d742ec95b2ee361b3bec11aa574eb0eb38fe09b40f77e7a42a2367d452273f1999af27443d
SHA1 hash: 5e0f5a858447914eadfa3f4909ed07f56441e3b1
MD5 hash: 775341e13d7da33c050d778b9bed8b34
humanhash: monkey-four-sierra-gee
File name:items list copy.pdf.z
Download: download sample
Signature AgentTesla
File size:423'934 bytes
First seen:2020-05-17 12:34:28 UTC
Last seen:Never
File type: z
MIME type:application/x-rar
ssdeep 6144:1vUgk9L2OkfrP2dTogsWibGSU1WgfldxtcQ4eZz/fuUkqIXB3NBNM:1vU8rPI0QM+hfjxtlnZLnktR3NnM
TLSH 9B9423B2500997D60885C82AC3844FA68F41FC5EA73653E4DEF7DE6111E8A9DACC0F87
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
81
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-17 12:35:23 UTC
File Type:
Binary (Archive)
Extracted files:
265
AV detection:
21 of 48 (43.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

z 9b0d9a923617daf42df24b3c4cfaf5a7caf8cece9f995cadc3c184478f6fc9ba

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments