MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b782003a8124d61283259a44e3a63e749e7e6d763ab3fcbd978acacef8b234be. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: b782003a8124d61283259a44e3a63e749e7e6d763ab3fcbd978acacef8b234be
SHA3-384 hash: bf1f6b0d45bd03434db9c083f27275d272f940a753a26a05c741ace0f4bc7d8c02bca5a7f6b43ebfedfefbc8f7bc262f
SHA1 hash: 92b328d488b7c32dbeeb0ffdd5bc9d67fff3be45
MD5 hash: fd1b4b2e156c7b6be53feedd7cf33200
humanhash: jupiter-lemon-diet-tango
File name:invoice & pl.7z
Download: download sample
Signature AgentTesla
File size:815'271 bytes
First seen:2020-07-19 09:51:05 UTC
Last seen:2020-07-19 12:09:46 UTC
File type: 7z
MIME type:application/x-7z-compressed
ssdeep 12288:SIhNRjMxMczVKD2e7Q1oMYoC+IbS2s+mvuX79ibkxhIQ+1/SPrJQt9zCx:SuvusivY7tQuJUk7x+1/SP1QPex
TLSH 930523EF35D491FDC6E7E774E8D255241E3C3B4797ED28227F980D37620909892E1A0A
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
66
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-07-19 00:54:45 UTC
AV detection:
16 of 29 (55.17%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

7z b782003a8124d61283259a44e3a63e749e7e6d763ab3fcbd978acacef8b234be

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments