MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 88ae67317f8b58720554891cc4e772a68b7ceec0e906382489dee16212c539a1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 88ae67317f8b58720554891cc4e772a68b7ceec0e906382489dee16212c539a1
SHA3-384 hash: 08e75c45094f78c472233412d4169a1339522c62e87ca7fd0d184aff50ee145e7793f7b7d8968eaa29b61bdab7f04a36
SHA1 hash: 05fc8b302be76d066659f11a4205f1f566c73cd4
MD5 hash: 4da508b42e9baa6574f816d695d195f7
humanhash: pennsylvania-diet-colorado-nine
File name:invoice.zip
Download: download sample
Signature AgentTesla
File size:365'972 bytes
First seen:2020-06-23 11:54:16 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:wtVF2q0+Oun6OCA3bIacBY0G2YZXyT/mLgiKPJVijQoHhh7XJ+JRbWIs7u2jlO:Q22PCA3bIawY0cZXMmUrRVmQg/TJ+Jwo
TLSH 7874234B5415C648F0CCAE2EE46172CDF37E7881DFE5A941A203C2296CEDA5FAC11D3A
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
68
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-23 08:33:33 UTC
AV detection:
20 of 30 (66.67%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 88ae67317f8b58720554891cc4e772a68b7ceec0e906382489dee16212c539a1

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments