MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ac3ddf66ba83902207959d6aadb8b869b532ad55b15b23592531afa76d551ea4. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: ac3ddf66ba83902207959d6aadb8b869b532ad55b15b23592531afa76d551ea4
SHA3-384 hash: bbad3ba3144e17124690e2e59fa3d0e07b7f01c91e159f2d837bebf64505bb93b16591fd5c61a6de41c2b5ad4b359310
SHA1 hash: 2ec85d985daaa142af30cf36d051b32e1aa2ac8d
MD5 hash: 69819ee75ee0a9a9f1b5fddd1b787017
humanhash: oklahoma-october-violet-north
File name:Mask Samples and Qty.zip
Download: download sample
Signature AgentTesla
File size:2'753'810 bytes
First seen:2020-05-03 17:13:16 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 49152:pU9cJuVmqB8G+RVc5fIalU9cJuVmqB8G+RVc5fIaZU9cJuVmqB8G+RVc5fIaq:grmqx6Vc5fDErmqx6Vc5fDQrmqx6Vc52
TLSH E0D5339F896912D756E43EFAF9E9808AF3C2705DE2758FBA731544D04A1D17830C2EB2
Reporter JoulK
Tags:zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
80
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-03 17:35:53 UTC
File Type:
Binary (Archive)
Extracted files:
60
AV detection:
18 of 31 (58.06%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

AgentTesla

zip ac3ddf66ba83902207959d6aadb8b869b532ad55b15b23592531afa76d551ea4

(this sample)

  
Delivery method
Distributed via web download

Comments