MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 1627e2d2db2059a2e86ab18f4d8f9c4cc3307fe322c7ee7374b3143d5819a5c0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 1627e2d2db2059a2e86ab18f4d8f9c4cc3307fe322c7ee7374b3143d5819a5c0
SHA3-384 hash: c0863c449953a893c77f2c22ff962226ef1bcbee7ffec5370a7cbcae9ccfe69d4d47bb2b3e249b4c9f45e47119cd3852
SHA1 hash: 57288ad7d9964aa80636f369d1987e47d186e758
MD5 hash: e22527e92e95ea103695ce5926d99c22
humanhash: alabama-pennsylvania-blossom-skylark
File name:RTGS_NEFT_ADVICE.7z
Download: download sample
Signature AgentTesla
File size:444'203 bytes
First seen:2020-10-26 15:14:20 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:Oilp/4rjnGQOvCpZ+BuVvsg5vuUHb55TBPru43:/4OvCpooLphlrx
TLSH 689423F11008CBD22515A5210F7EA5423191A352B76C71115ADAFFC2283EAFE6FEE5CB
Reporter abuse_ch
Tags:7z AgentTesla


Avatar
abuse_ch
Malspam distributing AgentTesla:

HELO: cloud.optimusinfosoft.net
Sending IP: 173.237.190.149
From: Accounts<sumant@devimetals.in>
Subject: Re: Payment Detail
Attachment: RTGS_NEFT_ADVICE.7z (contains "RTGS_NEFT_ADVICE.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
55
Origin country :
n/a
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 1627e2d2db2059a2e86ab18f4d8f9c4cc3307fe322c7ee7374b3143d5819a5c0

(this sample)

  
Dropping
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments