MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ced0658f9507b3a6adea27192a6e520ffe2f6a8d6790fef056bdaf743958198c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: ced0658f9507b3a6adea27192a6e520ffe2f6a8d6790fef056bdaf743958198c
SHA3-384 hash: 2bfd225abe10b0f9c11ad991b0509376ca6e37efc5ef0e3a2c7534a965980b4395cff36e4035882ee9ea66b430e76a6f
SHA1 hash: b49dc0c8c47611327efa685376962eb81d8b3928
MD5 hash: 09b2ab97f338f94f103f2b8228f83069
humanhash: kitten-hydrogen-south-shade
File name:NEW requirement.7z
Download: download sample
Signature AgentTesla
File size:533'518 bytes
First seen:2020-07-09 13:21:59 UTC
Last seen:Never
File type: 7z
MIME type:application/x-7z-compressed
ssdeep 12288:BWO7iuNPld99SRO60zqQ1+jqZzp/hYzwQKdu2K61VQ1tz:Bv7iuPPzSR8zqCxz5AwPd7K61+l
TLSH D1B4238F8DC0C2D8DA74193E642FC7C0A3E455BAF5DFB8D02953A084C59DA95F2EA843
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
70
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Spyware.Negasteal
Status:
Malicious
First seen:
2020-07-09 13:23:04 UTC
AV detection:
15 of 29 (51.72%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

7z ced0658f9507b3a6adea27192a6e520ffe2f6a8d6790fef056bdaf743958198c

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments