MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2a995261d450e20c8da8285ec731e66129e9a692ad8adee320affba23a3c3646. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 2a995261d450e20c8da8285ec731e66129e9a692ad8adee320affba23a3c3646
SHA3-384 hash: cae73cbc33aa9f83a4efe41f12e48328234c6eeb7557488428ec7260a784e5d377d66e7bef3ebdebf7b69917ce74ba7d
SHA1 hash: 235d8822b64116a75f3c2eedcd66cb6c9bff6601
MD5 hash: 31ad2480c2981dd3fa0e5b85a608e15c
humanhash: vegan-carpet-video-nuts
File name:SOA-2790.zip
Download: download sample
Signature AgentTesla
File size:347'967 bytes
First seen:2020-07-02 10:36:19 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:W4LE6/ecHzEufEUBM+G1fvIpi0LWRwavWNtncJXDpYxWmI91Ehn:7LZT3ZBG14M+NtcJTpYxWfEhn
TLSH 3E7423E1D855212783E58BB0F8EF9C8D73EE4A37769E88E1DCC62403870E9850E47682
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
71
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-07-02 10:38:05 UTC
AV detection:
14 of 48 (29.17%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 2a995261d450e20c8da8285ec731e66129e9a692ad8adee320affba23a3c3646

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments