MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b50389d26647173daff1db234f5c1e457a6af697d05791465b026ac3c6d3ca96. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: b50389d26647173daff1db234f5c1e457a6af697d05791465b026ac3c6d3ca96
SHA3-384 hash: 7c35eb486396cef676f55ff7be55824c5ffacdf9bdf28fe31c1605b7edfe5e0ba45f5f07ac33515527b83c789bef6a3c
SHA1 hash: 2863a9652a1d0aa19327c9b5bf3f406f67d486cb
MD5 hash: 5a4f7535d1ffaceb816f036a2d1bb889
humanhash: undress-video-carolina-river
File name:SOA_APRIL2020.rar
Download: download sample
Signature AgentTesla
File size:955'716 bytes
First seen:2020-05-26 04:34:27 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 12288:Mo4ljD8LZX2op8KqqyCQZTNFVE/OsJrnQs6xgjWl5tR7hhuN5sOvgl4hiiRRhVEA:d416ooRC9E7JcsTWl5tRxziRRhVyof
TLSH E215336AAFF1C72502547328796F4E7582D4A42B5CAC885B2D1CECF9C85013132FE8FA
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
67
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
Win32.Trojan.Injector
Status:
Malicious
First seen:
2020-05-26 04:35:25 UTC
File Type:
Binary (Archive)
Extracted files:
12
AV detection:
25 of 48 (52.08%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar b50389d26647173daff1db234f5c1e457a6af697d05791465b026ac3c6d3ca96

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments