MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a0076bc42cef10bb43891f58ad785c80176f3d1306e99bef3531b48841034173. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: a0076bc42cef10bb43891f58ad785c80176f3d1306e99bef3531b48841034173
SHA3-384 hash: d005e97997b1b739b6d52674075975dcaa539293ff87655f47f858faf3caa3a6ceac2a9623fd9ea937126522b64e8a41
SHA1 hash: 444c12f8116b1b7626ae39e27003304590208212
MD5 hash: 41c9e4cf03d1b90ea66ff24ab759733f
humanhash: hydrogen-mars-sodium-fix
File name:REQN No. ABL-S205044A.rar
Download: download sample
Signature AgentTesla
File size:519'989 bytes
First seen:2020-05-21 06:56:28 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 12288:ZhOKvwHmJ57Q0TU3mTlBBkH2bRjyzvQTjLhkI9gNUhuj:vO5mJ57Q0T9TlBBc2bRmzWVph8
TLSH 7EB423150AB07F6D30ABCD0577E904B1C72C59E34D5B76EB76E60A0C4CA623ACF46DA8
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-21 07:36:00 UTC
File Type:
Binary (Archive)
Extracted files:
23
AV detection:
16 of 48 (33.33%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar a0076bc42cef10bb43891f58ad785c80176f3d1306e99bef3531b48841034173

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments