MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a4ee7245c26b8c1a3cbfc76f09784ecc5afff56472e1fee2abc03550ab4c2737. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: a4ee7245c26b8c1a3cbfc76f09784ecc5afff56472e1fee2abc03550ab4c2737
SHA3-384 hash: 8c768b622b42ee12960dbb19da1bcf2131453aba834de604a27e0ad569a7d938c68b8346af5ec514ea25bd5b5d97ad08
SHA1 hash: b521213c735aecbb5111611c17d31390ce249280
MD5 hash: 8459ba8d1aedecff6713662c4e443945
humanhash: fanta-table-robin-wolfram
File name:REQUEST QUOTE.Gz
Download: download sample
Signature AgentTesla
File size:390'802 bytes
First seen:2020-06-15 05:26:41 UTC
Last seen:Never
File type: gz
MIME type:application/x-rar
ssdeep 6144:N4mG9KhhcjMzDWzRxwKE7IuzXEgP4ZDDSkEvjxdmBdapuHLjirBTJX2fVpJl4KU+:NS9KhhcMzCzRxwKE7dCdSdmBdYuIFG9X
TLSH 1584234A319463292D9F3C3FEC7F11D2A2E62F5B51BC8160907C1E1CBA19D574EAB2D2
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
56
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-15 05:28:06 UTC
AV detection:
18 of 31 (58.06%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

gz a4ee7245c26b8c1a3cbfc76f09784ecc5afff56472e1fee2abc03550ab4c2737

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments