MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 6373a923339662e3871335368596fb8f5997ef748dd5685a5844b7487af7af16. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 6373a923339662e3871335368596fb8f5997ef748dd5685a5844b7487af7af16
SHA3-384 hash: 7b90679b14a511951384484550ffe36d75c6fde8a8070b324adceff2320f391023fd4a70147edd4247ba322be043f0d3
SHA1 hash: 0eb436f5fa6651be9ac8f7b0c72d818ab76ed0f4
MD5 hash: 7a9e653369fb772dd826048649a75487
humanhash: sad-virginia-enemy-sweet
File name:invoice.z
Download: download sample
Signature AgentTesla
File size:410'100 bytes
First seen:2020-06-10 06:02:26 UTC
Last seen:2020-06-10 09:28:30 UTC
File type: z
MIME type:application/x-rar
ssdeep 6144:OsP4EAFR08Vd2ZqC1bMUEm4tcCpQDpvnH07FGTgXDrniQQGtMLWStTiPvL38c:j4VXb2Zh9em4KCpQdH0R9XDLxQGts+oc
TLSH 6F9423920D64C764225AE6953732217BF26B2E850DCF5DA36B995A3F0DF12B3C9C0F41
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
56
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-10 03:30:33 UTC
AV detection:
15 of 28 (53.57%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

z 6373a923339662e3871335368596fb8f5997ef748dd5685a5844b7487af7af16

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments