MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 3f91cde0cc4cd7c749f21c77f43239b75213cde67efae8b04789ea0290d651e5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 3f91cde0cc4cd7c749f21c77f43239b75213cde67efae8b04789ea0290d651e5
SHA3-384 hash: 1a2489ae0594fca27aee6659e70707ddb4d34c1993f6a1b78635a00213ad189aa0d1d64efb013bedee4e28ea614336ad
SHA1 hash: 3668d4708599d8d0047dae439d2498241e398cdc
MD5 hash: 298cad3a2514cb0564faa9a840e3aa67
humanhash: beer-neptune-queen-steak
File name:MV ZHEHAI520.rar
Download: download sample
Signature AgentTesla
File size:500'589 bytes
First seen:2020-06-16 10:23:11 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 12288:e1kpEh1d9OF7EiQC25iM8yPucmCU30W+IlKAEcp:4lh1WxW1hPsCrPIlcS
TLSH A2B4235B03151484CEFD1A62BFAC7892BF65B4CE76BE0884926C290BC2B136557F1B1E
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-16 10:25:04 UTC
AV detection:
15 of 29 (51.72%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 3f91cde0cc4cd7c749f21c77f43239b75213cde67efae8b04789ea0290d651e5

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments