MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 7b4844dbe7534689b35f9dd149cad29f9ce43d88f842b86c8d407c2eea3ec039. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 7b4844dbe7534689b35f9dd149cad29f9ce43d88f842b86c8d407c2eea3ec039
SHA3-384 hash: b0ae11d79e36037eb13a577f17cbf3e3384dfb60b8ec8c3fd9434b53532fd12dad9de3d33a14c7055ccc20b007132ac3
SHA1 hash: 7e13a9d38dcbecca54a2207ecc056c7ddf89c9ad
MD5 hash: fc3a0ea05f7ed57e808ac94550c46594
humanhash: sweet-jupiter-oklahoma-potato
File name:PDF.ZP034 97130232.gz
Download: download sample
Signature AgentTesla
File size:371'913 bytes
First seen:2020-07-22 04:20:49 UTC
Last seen:Never
File type: gz
MIME type:application/x-rar
ssdeep 6144:e809fedP3jR3SyKx9s24Lvj1PM7Kzfv36QkvcRRDaM/1hT2ZkxjCsbxQ4+g39Adj:ed92dPzR9w9Pk7FMA33PBDaM/7SWlCsG
TLSH 118423B32F581766D8E0780B34AD2D671368A857C9E0B7684180E49BFED8E1C5235FF6
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-07-22 04:22:06 UTC
AV detection:
20 of 29 (68.97%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

gz 7b4844dbe7534689b35f9dd149cad29f9ce43d88f842b86c8d407c2eea3ec039

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments