MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 eb41dc9b26ffcfb782fe15ddac09de3133c23322d5b82a5d256f319e9ebcf2c4. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: eb41dc9b26ffcfb782fe15ddac09de3133c23322d5b82a5d256f319e9ebcf2c4
SHA3-384 hash: 37c2260c395cc9149cf116c09a5544f1ff67ca7233f6c6052e424df749e1c02e76139f8159280458836e2e046468fe79
SHA1 hash: 3053a0332fb10ccc55f94ff8269834eeca205666
MD5 hash: 78e1847f71ac2227716c72659dbb245b
humanhash: four-zebra-wyoming-washington
File name:account info.Z
Download: download sample
Signature AgentTesla
File size:410'117 bytes
First seen:2020-05-13 04:36:12 UTC
Last seen:Never
File type: z
MIME type:application/x-rar
ssdeep 12288:8cxC5wXbLEOdb60N4Is1eMXw1jPEtGkzNYvnuS:dx7/s0YZXwAWj
TLSH 7C9423FCE636827E9CEDE2BB1CC65066270A064BCD77453AF2025D2D5088E4D5A3297C
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-13 05:37:33 UTC
AV detection:
20 of 31 (64.52%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

z eb41dc9b26ffcfb782fe15ddac09de3133c23322d5b82a5d256f319e9ebcf2c4

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments