MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b8ea34418cea2a711ba1334ba60bca52c99ef9f2be8fa8329a9af06b8861a2e0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: b8ea34418cea2a711ba1334ba60bca52c99ef9f2be8fa8329a9af06b8861a2e0
SHA3-384 hash: dea5ca159c909a721a34e66aadb7de62ce407f22dcbe3959b571e3dc9af816a02f48bea33f6ab7420367a2d837a95bd2
SHA1 hash: d3604c67c7bb14d4ddd6e050770407a8447c63c9
MD5 hash: eeed0b5214a23e4e5bf4fa89b6b68361
humanhash: bravo-winter-winter-december
File name:BL_02634582735.DOC.img
Download: download sample
Signature AgentTesla
File size:1'245'184 bytes
First seen:2020-07-21 14:50:20 UTC
Last seen:Never
File type: img
MIME type:application/x-iso9660-image
ssdeep 6144:sPCganNJ7fy0/23/eskyLQETVByVgrsyynKUYoG6fWMyjNmV2dCIoK2QTngYyRK:aanD7fy0/YkyLvTVWiUK1wNOC5QTngY
TLSH 0F4512A276509863E572067009BBF37DAB750F9552274287BB4C3BA63F731D71E0E181
Reporter cocaman
Tags:AgentTesla img


Avatar
cocaman
Malicious email
From: Kereine BOUNGOU YAMBA <office@vacuumcleanerservicecentre.co.uk>
Received: from box.vacuumcleanerservicecentre.co.uk (box.vacuumcleanerservicecentre.co.uk [104.168.237.56])
Date: Tue, 21 Jul 2020 15:38:40 +0100
Subject: Notification of Equipment release order
Attachment: BL_02634582735.DOC.img

Intelligence


File Origin
# of uploads :
1
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

img b8ea34418cea2a711ba1334ba60bca52c99ef9f2be8fa8329a9af06b8861a2e0

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments