MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7388cef5b0abc1df44c9e68abb65eb009eb925a6c3dca540446b689d021bf6b0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: 7388cef5b0abc1df44c9e68abb65eb009eb925a6c3dca540446b689d021bf6b0
SHA3-384 hash: 9fead11fce934f69717bfd2083731e22eaa21e56f4ed8370f3cc43efd378a572462d1ef3deb824680de341c1404f05dd
SHA1 hash: 6f803a66f30d70914ea3160d1a0476806b46f644
MD5 hash: c2979ed2dd905a629980c23321ec373d
humanhash: sierra-steak-hot-maryland
File name:Inquiry Samples_png.img
Download: download sample
Signature AgentTesla
File size:2'162'688 bytes
First seen:2021-07-15 07:45:02 UTC
Last seen:Never
File type: img
MIME type:application/x-iso9660-image
ssdeep 24576:UEG2vCM80L7DMtre9xtAsYwxH9i2U6GH:FGC8AQ8Gt0FG
TLSH T14EA5803EAA682A2BF77FD17446430014F4BC91DA36315CD796C729886A4D9027EEF36C
Reporter cocaman
Tags:AgentTesla img


Avatar
cocaman
Malicious email (T1566.001)
From: "<Office_Gustav@protonmail.com>" (likely spoofed)
Received: "from mail.jooble.com (mail.jooble.com [62.149.10.5]) "
Date: "Thu, 15 Jul 2021 03:18:48 +0100"
Subject: "Fwd Inquiry"
Attachment: "Inquiry Samples_png.img"

Intelligence


File Origin
# of uploads :
1
# of downloads :
147
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.AgentTesla
Status:
Malicious
First seen:
2021-07-15 07:45:10 UTC
File Type:
Binary (Archive)
Extracted files:
74
AV detection:
8 of 46 (17.39%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

img 7388cef5b0abc1df44c9e68abb65eb009eb925a6c3dca540446b689d021bf6b0

(this sample)

  
Delivery method
Distributed via e-mail attachment
  
Dropping
AgentTesla

Comments