MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 241d82b94453c2b5e9603c47ece0ef95e0e4344bfad3297dbf9cbec61dc7f53c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 241d82b94453c2b5e9603c47ece0ef95e0e4344bfad3297dbf9cbec61dc7f53c
SHA3-384 hash: 3f8b8f7a4bf5776d835330d86bc0bdda63ebff06cfe5534b3d9b51344165854d4f58192ae43bd0b5a44fad43926beb99
SHA1 hash: 22f1d95ad52246d791fab229294e38fc984d8c74
MD5 hash: d94f13b0fe7b92d75942462ff84d7207
humanhash: illinois-mars-apart-fix
File name:Invoice UT05-222546.pdf.rar
Download: download sample
Signature AgentTesla
File size:349'350 bytes
First seen:2020-06-22 19:09:57 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 6144:OS+n1YyQhMEcv3EE1EqOz0aKrC6e3hMSu2zCBF/w2fwG39h2GVZ9IeWVA9n0U:D+nucvMqgCeiSS/w2LWGH9Ie040U
TLSH 037423BDD1E0B287864DFD6C7BE142D9803F786BC804EAF861F847858D7A13616B05D9
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-22 19:11:04 UTC
AV detection:
19 of 31 (61.29%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 241d82b94453c2b5e9603c47ece0ef95e0e4344bfad3297dbf9cbec61dc7f53c

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments