MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2bffaa3bda985cdc40ec6e2b50afdd4861abc3c033cdff0b7dad164fcd4126a6. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 2bffaa3bda985cdc40ec6e2b50afdd4861abc3c033cdff0b7dad164fcd4126a6
SHA3-384 hash: 97a1ae86bd2b28b76182b45246f693326e654073609a5b880624b7760b438b22c5f613c3f87934d908a7f7410a77c89a
SHA1 hash: 2718c1eec9106ed458e45ef316bdb0ddd4184709
MD5 hash: f2dc22107d1d30c43f9816d233adfc31
humanhash: may-march-seventeen-maryland
File name:Encomenda Fornecedor nº 72718 PDF.gz
Download: download sample
Signature AgentTesla
File size:451'446 bytes
First seen:2020-09-24 10:50:21 UTC
Last seen:Never
File type: gz
MIME type:application/gzip
ssdeep 12288:K3CyP2T7E6vjmN01gkrqRCNs3S+UPPWeu:UCqmYA80frkUZq
TLSH 6DA4230C9B815F1EEDD1A17A283448AE0E619A7865BDFE484DFD794F032C7AC1A16C7C
Reporter Anonymous
Tags:AgentTesla gzip


Avatar
Anonymous
Received: from box.luatvietan.xyz (hwsrv-779141.hostwindsdns.com [142.11.247.137])
From: Maria Joao Rainha <sales@luatvietan.xyz>
Subject: ORDER 72718 + SF submitted for your review and process
In-Reply-To: <9c968320b0da411f6428a2ab0489cb14@luatvietan.xyz>

Intelligence


File Origin
# of uploads :
1
# of downloads :
102
Origin country :
n/a
Vendor Threat Intelligence
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

gz 2bffaa3bda985cdc40ec6e2b50afdd4861abc3c033cdff0b7dad164fcd4126a6

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments