MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 aa3e6bea7d743b0d45cc626e114fbcfb6e4f6c745bba4b2e73efa9918ac13927. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: aa3e6bea7d743b0d45cc626e114fbcfb6e4f6c745bba4b2e73efa9918ac13927
SHA3-384 hash: 98c0780e0fbd4714aa0008c00cc8227e4145d553f78ea430d137da7f0f183fd050d23c651d438f72819e05a350c2806d
SHA1 hash: f3aa2b3399a9f6798f5911c99a61c8c552877d34
MD5 hash: fa649f67372901528baa4ce5baeb0b48
humanhash: colorado-nineteen-rugby-washington
File name:DHL SHIPPING DOCUMENTS.7z
Download: download sample
Signature AgentTesla
File size:424'551 bytes
First seen:2020-06-25 06:07:49 UTC
Last seen:Never
File type: 7z
MIME type:application/x-rar
ssdeep 12288:j2+CXogbG7Qgh8T1slZttKcGuqLu0jNAro+:zC4S1slTtPGuw7ji0+
TLSH B9942365A8411813DED2C0EB4A6C664577F74F2058B2C271C76E43CDBD8FA22627AB27
Reporter cocaman
Tags:7z AgentTesla


Avatar
cocaman
Malicious email
From: noreply@dhl.com
Received: from mail.amdigital.ro (cw176-abf-agb55.romania-webhosting.com [176.126.172.55])
Date: Thu, 25 Jun 2020 05:59:17 +0100
Subject: Re: CI, PL. / DHL AWB: 2065014173 / IMPORT DUTY 5896.42+USD.
Attachment: DHL SHIPPING DOCUMENTS.7z

Intelligence


File Origin
# of uploads :
1
# of downloads :
75
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

7z aa3e6bea7d743b0d45cc626e114fbcfb6e4f6c745bba4b2e73efa9918ac13927

(this sample)

  
Delivery method
Distributed via e-mail attachment
  
Dropping
AgentTesla

Comments