MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 86278dfe3c5237d9c2faa70aa8e28bf0fda621c47b90474b2fed050c7ad12139. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 86278dfe3c5237d9c2faa70aa8e28bf0fda621c47b90474b2fed050c7ad12139
SHA3-384 hash: 7421b94589d65d1d59ae90b4a4042924c60f438a0e88f03682be5b08cc38dcd4497ce18fd8f3eab9bd7fc69404df8c4f
SHA1 hash: 39fa8bfedcb00ee69e638bbd778f83de32e6f5fb
MD5 hash: 6fec503d1646dc60f8b543075f353fb6
humanhash: gee-one-happy-leopard
File name:confirm attach.pdf.z
Download: download sample
Signature AgentTesla
File size:436'361 bytes
First seen:2020-07-28 17:41:36 UTC
Last seen:Never
File type: z
MIME type:application/x-rar
ssdeep 12288:lfbv3Gvg2QC0HaFfr/ubP6WXrZptya0ijqoCZsSaj:Bj34PQCd9/aP6urZrjBCK
TLSH FF9423BA425DC201F64D99651C100AF54B1AFAE933C022FEB54DE5E4DBC6E87B748AB0
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
75
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-07-27 20:43:47 UTC
AV detection:
16 of 29 (55.17%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

z 86278dfe3c5237d9c2faa70aa8e28bf0fda621c47b90474b2fed050c7ad12139

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments