MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 1400e3469002c45fb6866144794bfa0ab912eb93d2f20fb287063cdeeb767db0. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 1400e3469002c45fb6866144794bfa0ab912eb93d2f20fb287063cdeeb767db0
SHA3-384 hash: 65268bb9e0a10f620a5310a49c568f3b5981313be71803953308ac2795762479f87e9dd1c9c65d52add408079d941a67
SHA1 hash: fb5732d458c9e3c1b62694fe9a8e0e6c5998af5f
MD5 hash: 0fdd74702a110f5fb4f63160a70e37a6
humanhash: red-sweet-foxtrot-diet
File name:ADYA CPR 5 20.xlsx.rar
Download: download sample
Signature AgentTesla
File size:532'740 bytes
First seen:2020-06-18 06:00:41 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 12288:IpFlWEqiXSGeuKKoHK6NnoMmd2htBWSbsdvAv1E5Bvp7i6:I8EqW4KEXopwdWSbY/Bt
TLSH 38B423D3959E6F066ABF4B5E90FE368E80D03733007F21AD59FF794172806516A4B8E2
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
68
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Infostealer.Agensla
Status:
Malicious
First seen:
2020-06-18 06:02:05 UTC
AV detection:
13 of 28 (46.43%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 1400e3469002c45fb6866144794bfa0ab912eb93d2f20fb287063cdeeb767db0

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments