MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 064f1f2f242f0f0213351fa4cea333e20b288d7411fb53e355a85bcdb429e564. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 064f1f2f242f0f0213351fa4cea333e20b288d7411fb53e355a85bcdb429e564
SHA3-384 hash: 9e76aece6c6f287575c02ff5bcdb85cef41cef40f196238ccf7a0d9c621f68059ebc430bd1db534ee828a4fad291a790
SHA1 hash: 43a537c325b451457084e1135dfb764fc4bb5cf3
MD5 hash: 0b2b06e4df9ce7fca9c12bf166a7daf5
humanhash: magazine-carolina-magnesium-lemon
File name:TT COPY.ARJ
Download: download sample
Signature AgentTesla
File size:348'157 bytes
First seen:2020-07-02 15:41:32 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:Vbd3ooIqohNeSWMeWBTmnSahpZUE4z7Jz4m1tLkbxqwyGbt8K:p5tkSTfBhpZUE4z7Cvt8K
TLSH FC7423DDEC656E1B57800602F2CEFB3B880F5E55117EE64EFA3A95A4C390271B012F4A
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
84
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Infostealer.Fareit
Status:
Malicious
First seen:
2020-07-02 10:17:25 UTC
AV detection:
26 of 48 (54.17%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 064f1f2f242f0f0213351fa4cea333e20b288d7411fb53e355a85bcdb429e564

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments