MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a758d1b699a781ae018de5268372272892796c2236eb7d80e472eb9e4158a8d9. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: a758d1b699a781ae018de5268372272892796c2236eb7d80e472eb9e4158a8d9
SHA3-384 hash: 4ec84068642f26a991f4e41568074a5125c9647992830e929fc9887751151b687780cffbd35da096bf4ffab29c3e2c8a
SHA1 hash: 4d63e806dc39bbafb17f97392b17c659a5cf3a1a
MD5 hash: 779f10a28ac3021a573e20aef57b05db
humanhash: michigan-pluto-maryland-minnesota
File name:ScanCopy20200807_pdf.ace
Download: download sample
Signature AgentTesla
File size:585'260 bytes
First seen:2020-07-08 07:11:46 UTC
Last seen:2020-07-08 09:26:43 UTC
File type: ace
MIME type:application/octet-stream
ssdeep 12288:qvZavjbnt0VaOhB87xbY05BmwLCxtAXmZL4dgzqqHAtivhZuxgscF+yy5VN8:qRavjj6x0xbH5UUike0dgzdqsCLcQ5M
TLSH 24C423CC1354C8354BD664E2B4F8EE5BA245A72735CA7B0042C92A45C3CB6DCEFD2D9A
Reporter jarumlus

Intelligence


File Origin
# of uploads :
2
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Skeeyah
Status:
Malicious
First seen:
2020-07-08 07:13:05 UTC
AV detection:
15 of 29 (51.72%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

ace a758d1b699a781ae018de5268372272892796c2236eb7d80e472eb9e4158a8d9

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments