MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 5c93cc919a74ad9d5639bb0db72f7ad4f0188755c669e182da2bfa132ebd8a18. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 5c93cc919a74ad9d5639bb0db72f7ad4f0188755c669e182da2bfa132ebd8a18
SHA3-384 hash: 8a0c11ce07f20c9d74b842a8069f2852d228b9e42e63189fb3d5640365f964edcc3c01b47b7dba115810d7045cabc4a0
SHA1 hash: d77bc01186baf45123164d0e6a7d6ca6cde54f72
MD5 hash: 3c7ddcd5717179c86109eb379a07797e
humanhash: four-violet-winner-bluebird
File name:PDF45672849.img
Download: download sample
Signature AgentTesla
File size:1'271'808 bytes
First seen:2020-09-25 13:30:13 UTC
Last seen:Never
File type: img
MIME type:application/x-iso9660-image
ssdeep 24576:YRiZucOaCrYz4jEmW/g+Ro4n6aKg9PmHHT7amUPRr:2cyrKmW/P3632Psat
TLSH B245E02031A23B09D0B84BB40255B4B5C3B655257262D7987FDB22FEAAF27C13E15F4B
Reporter abuse_ch
Tags:AgentTesla img


Avatar
abuse_ch
Malspam distributing unidentified malware:

From: Sales <cowayengrg@singnet.com.sg>
Reply-To: Charlie MARQUETON <cowayengrg@singnet.com.sg>
Subject: RE:
Attachment: PDF45672849.img (contains "PDF45672849.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
96
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Taskun
Status:
Malicious
First seen:
2020-09-25 09:18:51 UTC
AV detection:
8 of 48 (16.67%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

img 5c93cc919a74ad9d5639bb0db72f7ad4f0188755c669e182da2bfa132ebd8a18

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments