MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 c04c248b440d97cbb2525d179d781580c0ef0d7a0a96a59e4b8675429fda5218. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
MassLogger
Vendor detections: 4
| SHA256 hash: | c04c248b440d97cbb2525d179d781580c0ef0d7a0a96a59e4b8675429fda5218 |
|---|---|
| SHA3-384 hash: | 967d845aea7c9fcff05399f2c814c346b81f0a465c5ecfc8d36b9c216d84f91402f214473d89f1554f04b71cee3754e1 |
| SHA1 hash: | 403e1a28ff81568c607de7893cda40d32ec7c518 |
| MD5 hash: | caa6744f7ec49ecdcfb73ab56f3ffd97 |
| humanhash: | early-ten-zulu-william |
| File name: | 7245315423g7.zip |
| Download: | download sample |
| Signature | MassLogger |
| File size: | 664'011 bytes |
| First seen: | 2020-08-05 11:42:57 UTC |
| Last seen: | Never |
| File type: | zip |
| MIME type: | application/zip |
| ssdeep | 12288:vXBcEpym4Z1iUlD0ZzN5uldFylLU04gsZ+osKb7RX86gBwaKswvsCKMe:uEpym4nJD8uJy1EFZ+tKJX89k1sCK1 |
| TLSH | 03E4232ABBB78531C4657BFE50255B9CF6DDD6C37D6694B208201FE27980700DDACAC8 |
| Reporter | |
| Tags: | MassLogger zip |
abuse_ch
Malspam distributing unidentified malware:HELO: server.gestionmail.com
Sending IP: 84.246.211.24
From: info@afroturklogistics.com
Subject: FW: Scanning from a Samsung All-in-One
Attachment: 7245315423g7.zip (contains "7245315423g7.exe")
Intelligence
File Origin
# of uploads :
1
# of downloads :
57
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-08-05 11:44:09 UTC
AV detection:
17 of 28 (60.71%)
Threat level:
5/5
Detection(s):
Suspicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
AgentTesla
Score:
1.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.