MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3b6c8819aecb4d7ac8495c27b3e66dd22ff24be66bf231703b8176123dda7d98. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 3b6c8819aecb4d7ac8495c27b3e66dd22ff24be66bf231703b8176123dda7d98
SHA3-384 hash: 852eca63fbf55819c2375b0ec8395d2d112b541ccabc2b686fca538cce57179e05ba8c672fbdaad4472ebde4b5724681
SHA1 hash: 0ca61fafa0065ade1b10ec8fbda57897017357a9
MD5 hash: 56e6c39f5b2e0a8c1e86aa44fc716294
humanhash: mountain-bacon-oscar-tennis
File name:QUOTE3420997.zip
Download: download sample
Signature AgentTesla
File size:510'175 bytes
First seen:2020-05-08 18:23:46 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:MwdJCaalYv8etaK2tmCis3nl1JJX7C/eksS0PpSipxUK:MwaaWTetaK/NIlD0nT0p
TLSH 8CB4234A548C45D72CAB1215D6AF32BEFBEBAC1EDCC875814A95E9860F3DCB5D00321E
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
80
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Genkryptik
Status:
Malicious
First seen:
2020-05-08 18:35:27 UTC
File Type:
Binary (Archive)
Extracted files:
2
AV detection:
18 of 48 (37.50%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 3b6c8819aecb4d7ac8495c27b3e66dd22ff24be66bf231703b8176123dda7d98

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments