MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d9dcc9e4d03df596f9a87e20765eb5e070b815a9fd5be411229e4630b1bec98b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: d9dcc9e4d03df596f9a87e20765eb5e070b815a9fd5be411229e4630b1bec98b
SHA3-384 hash: a013624a0f2525670dd91879b0af00fd768856096ef00411ca861345c938d7ab3cb649dd6c4a9e5ff66cd4772035dfb5
SHA1 hash: b01b05715560366f9ac31c440d07d9110b43c05b
MD5 hash: cc839bf414d458de7ca8540bb785fe91
humanhash: oranges-king-coffee-may
File name:Nissin Eletach Vietnam Co., Ltd - PRODUCTS LIST.z
Download: download sample
Signature AgentTesla
File size:655'558 bytes
First seen:2020-10-20 22:30:02 UTC
Last seen:Never
File type: z
MIME type:application/x-rar
ssdeep 12288:PfXWBS41Iz/+zChe6FRJz6q/8ZB3ZCCEYmBRKO5D16BN5u2qKjR8Ir2MNhTT63kl:POB9uzGzChXFT78k3Bj8vtqjGLf63Xw
TLSH 18D42303E2E9AF28471DC68CDB5FD46B8A0B3DC257C9076421991F97FC42CA19C6A74A
Reporter GovCERT_CH
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
61
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-10-20 14:34:21 UTC
AV detection:
4 of 48 (8.33%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

z d9dcc9e4d03df596f9a87e20765eb5e070b815a9fd5be411229e4630b1bec98b

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments