MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 abeba22df4e8952ed7680b78f8b8b63318e5639f26dad65868d08eaacd8e36ff. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: abeba22df4e8952ed7680b78f8b8b63318e5639f26dad65868d08eaacd8e36ff
SHA3-384 hash: 7ba6ba62a44fc034286c4024acdc0294da73b42a7b1d650eb01dc9b4a671b46e218e9cd85d88e1df1b5107ebb724d16d
SHA1 hash: b719745eeaccb036d30b731a1886f90e7039d342
MD5 hash: cd000791adb51f88d680cd262f2023f2
humanhash: item-arkansas-kitten-black
File name:Payment Nofication.pdf.7z
Download: download sample
File size:13'090 bytes
First seen:2020-10-13 12:30:34 UTC
Last seen:Never
File type: 7z
MIME type:application/x-rar
ssdeep 192:gJr8weFEluy+5rVg5UAbNzZUWHKQ1OdcLHjb1twD7cEzlJeifhK7i4cSOfyxI:68weFGu5NAxzZUWHKKjuzlJrKuxiI
TLSH 3A42D17D733BC107DB3213F986AAC4553526851B9C3EB6C2A495105C2876311552B8E7
Reporter abuse_ch
Tags:7z


Avatar
abuse_ch
Malspam distributing unidentified malware:

HELO: box.iizvar.com
Sending IP: 45.61.53.254
From: Paymentsemail@fnb.co.za
Subject: Payment Notification
Attachment: Payment Nofication.pdf.7z (contains "Payment Nofication.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
94
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-10-13 10:59:01 UTC
AV detection:
17 of 29 (58.62%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

7z abeba22df4e8952ed7680b78f8b8b63318e5639f26dad65868d08eaacd8e36ff

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments