MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3e1e4ecca02c8d67aff2b533a32f55313e531662442494d171658decbbef00e7. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 3e1e4ecca02c8d67aff2b533a32f55313e531662442494d171658decbbef00e7
SHA3-384 hash: 81121a4dd23c449a809ddf96d523cd4e9f0801223514d3b9aad447b19fc945b6ec4d6ee909fc4bb1d91cfbdeaf480778
SHA1 hash: 8195f6d6b3b0c4e120ef81f1b3ec25ce5f3ab366
MD5 hash: cc9a991bbc49b9f290c5a3d4b1bed935
humanhash: shade-diet-eighteen-single
File name:NEW ORDER.zip
Download: download sample
Signature AgentTesla
File size:504'994 bytes
First seen:2020-05-21 07:09:35 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:FI4RgR2sgsqs1ExGHZCFDEDFX0yevaqh1:FI4A2jsqs1uGHQFwlNevaqh1
TLSH 05B423AEF4F297A353D4B68CC3AD803580B7F5AE8AD804C1AD54F4A47D32D12D94E1A7
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
75
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-21 07:35:55 UTC
AV detection:
22 of 48 (45.83%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 3e1e4ecca02c8d67aff2b533a32f55313e531662442494d171658decbbef00e7

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments