MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 76b1e1f10cdfbe0f04f5c4801c45af174a9ede3207bf42f18be69d8ff630725f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 76b1e1f10cdfbe0f04f5c4801c45af174a9ede3207bf42f18be69d8ff630725f
SHA3-384 hash: d46b849974e5ad8b08f46429d9963953d6e8527e5c8f99bff41331b60cf4bdd689dbe2109b453267cfe4f0ffc92b3912
SHA1 hash: d7e9d1cc174423129fdb4ad66c8837328ce63163
MD5 hash: 9d0c046d88f1c3fb98b9c1874b80bebd
humanhash: quebec-glucose-diet-mountain
File name:long overdue statement (2).zip
Download: download sample
Signature AgentTesla
File size:426'952 bytes
First seen:2020-06-25 10:04:25 UTC
Last seen:2020-06-25 18:10:33 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:nsT3hQpfMfpVFSXlUnTqSAfWEr+8LZfZkYEuqsq9gLo9dSRrsRsLh1zPTaa7ymav:sGpfMf4a2dmksdSpsRIYU+aSXKxzE
TLSH FC94234998EA0E9FC10099430DBFAE096DB3E0D2DBEC36AC97ADA1C74D70771D245E94
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
69
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-25 09:56:37 UTC
AV detection:
22 of 31 (70.97%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 76b1e1f10cdfbe0f04f5c4801c45af174a9ede3207bf42f18be69d8ff630725f

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments