MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 dc6dc7a5644077d3101a6b3ba4ffd0c368049af59306d17f03d6e322e3aafe0d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: dc6dc7a5644077d3101a6b3ba4ffd0c368049af59306d17f03d6e322e3aafe0d
SHA3-384 hash: 23d674c59789414a99cb76609b540e2541b8169bd860f175137b660c2807af4b8f2965016cd2dce9c8d3a4732dfe143d
SHA1 hash: 8a7d208e325767a3908081d60faa93795e26a7ff
MD5 hash: c0429298c751eb6227f40d2934a2b5f3
humanhash: georgia-batman-east-pennsylvania
File name:Final RFQ FOR RRMIP-GSD Schrobenhausen PROJECT TECHNICAL PROPOSAL FOR PROCUREMENT OF PROJECT MATERIALS FINAL REMINDER.img
Download: download sample
Signature AgentTesla
File size:1'245'184 bytes
First seen:2020-06-23 11:19:01 UTC
Last seen:2020-06-25 05:11:37 UTC
File type: img
MIME type:application/x-iso9660-image
ssdeep 12288:Nd5+gGNXUb+/XsdlD2646tbsOk16+33/Gn:/B+/XU92kbsB1TE
TLSH C345F0E2B2914204FAB58BB449319960DBFBBD1FE1F2E20D394E31AD1BB77119541B23
Reporter cocaman
Tags:AgentTesla img


Avatar
cocaman
Malicious email
From: Adelbert Schmidt <adelbert.schmidth@HanonSystems.com>
Received: from 162-241-215-47.unifiedlayer.com (unknown [162.241.215.47])
Date: 24 Jun 2020 22:49:54 -0700
Subject: Final RFQ FOR RRMIP-GSD Schrobenhausen PROJECT TECHNICAL PROPOSAL FOR PROCUREMENT OF PROJECT MATERIALS (FINAL REMINDER)
Attachment: Final RFQ FOR RRMIP-GSD Schrobenhausen PROJECT TECHNICAL PROPOSAL FOR PROCUREMENT OF PROJECT MATERIALS FINAL REMINDER.img

Intelligence


File Origin
# of uploads :
2
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-23 11:20:04 UTC
File Type:
Binary (Archive)
Extracted files:
16
AV detection:
16 of 31 (51.61%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

img dc6dc7a5644077d3101a6b3ba4ffd0c368049af59306d17f03d6e322e3aafe0d

(this sample)

  
Delivery method
Distributed via e-mail attachment
  
Dropping
AgentTesla

Comments