MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 62035c9c3da0874bd515dab359453930f07ad53d045d236678c554c09ac973b3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 62035c9c3da0874bd515dab359453930f07ad53d045d236678c554c09ac973b3
SHA3-384 hash: 7ba0b46e6d0c213787344ee748c92e0c12e3afbe404f55f59b1e55f1e6e420df57eb832fc46cd77765d3fb76889f86d0
SHA1 hash: 8d1204b7ca637c0eea667a19ab87d16e165be3d3
MD5 hash: 3e7bf1227e91cf87faa466e755927674
humanhash: virginia-romeo-low-robert
File name:MV YICHUN.pdf.arj
Download: download sample
Signature AgentTesla
File size:409'425 bytes
First seen:2020-06-26 07:29:34 UTC
Last seen:2020-06-26 09:23:22 UTC
File type: zip
MIME type:application/zip
ssdeep 12288:dMmWKPGzU05ay1y27vFX/EHfnoVOJ/XjF:drbGzQYZ7tX/ECOZ
TLSH 9E942359395DE31BF75892E8AE07CD20F60B2EC098DD4B9B3B644B2DB55CB0824F9067
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
68
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.SchInject
Status:
Malicious
First seen:
2020-06-26 07:31:07 UTC
AV detection:
21 of 29 (72.41%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 62035c9c3da0874bd515dab359453930f07ad53d045d236678c554c09ac973b3

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments