MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 93af91d744183023dc1b80be0c5a318aa43186b6e4eed10bf8dff393c45919c2. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 93af91d744183023dc1b80be0c5a318aa43186b6e4eed10bf8dff393c45919c2
SHA3-384 hash: 696205ab7d26aaa90bccc4dd27726f6cbd0dfbd36616d66cd6281cc5f9d74ab87ee672c23aadc05b21ca6fc5a523a929
SHA1 hash: cff0449b8ad06fa383484174a663597bb1786648
MD5 hash: 75e94edab43c4c5e652915db43ef9d41
humanhash: double-berlin-lake-alabama
File name:New Purchase Order.pdf.rar
Download: download sample
Signature AgentTesla
File size:414'322 bytes
First seen:2020-06-16 08:37:39 UTC
Last seen:2020-06-16 11:05:57 UTC
File type: rar
MIME type:application/x-rar
ssdeep 12288:d/3IUS4ioXZduGioB6TRIjizaEdyVqUxOnhlM:dRS4nXZdiu3jiz9tUxkhlM
TLSH 8F9423BC08F5DB3E93500AEF5B1FC297B5B94B906E6308AAC8F52C59A70F4186134767
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Agensla
Status:
Malicious
First seen:
2020-06-16 08:39:03 UTC
File Type:
Binary (Archive)
Extracted files:
5
AV detection:
20 of 31 (64.52%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 93af91d744183023dc1b80be0c5a318aa43186b6e4eed10bf8dff393c45919c2

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments