MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 38b4569a6d26ce9fed300b925eb95dd7152a37bf9bff425f2a64bb3c4743fec8. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 38b4569a6d26ce9fed300b925eb95dd7152a37bf9bff425f2a64bb3c4743fec8
SHA3-384 hash: bff23da20b3c182a8b3f4baab3be42f51757f135f893dcfa427d64cd2734535a4d4f3039fa03cd507760fdebfda2cc2f
SHA1 hash: 09c3cc92ea8cb2a43d9102f1aefa35e49ce1f8f2
MD5 hash: 5e50ad53ce50bbcbe62ed955623bf861
humanhash: harry-cold-solar-xray
File name:Product Inquiry PO.pdf.zip
Download: download sample
Signature AgentTesla
File size:492'129 bytes
First seen:2020-05-27 06:08:48 UTC
Last seen:2020-05-27 09:48:05 UTC
File type: zip
MIME type:application/zip
ssdeep 12288:eVfbBclKx09xYSuRCKqFmNTMAex3Ou0SBfpDLI:yfb6lY0b/uRrqFETMA6JBfpDs
TLSH 75A4231182AC4E120CB35EF05D2E395E7BE4022770C5B1B6629AE6B1842B539DFF4F9C
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-26 22:43:41 UTC
File Type:
Binary (Archive)
Extracted files:
266
AV detection:
32 of 48 (66.67%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 38b4569a6d26ce9fed300b925eb95dd7152a37bf9bff425f2a64bb3c4743fec8

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments