MalwareBazaar Database

This page shows some basic information the YARA rule AgentTesla_PowerShell_AESManaged_InMemory_Loader including corresponding malware samples.

Database Entry


YARA Rule:AgentTesla_PowerShell_AESManaged_InMemory_Loader
Author:Aldair Maihuiri
Description:Detects a PowerShell AES-CBC in-memory loader through its managed cryptography and execution chain
Firstseen:2026-10-08 18:50:25 UTC
Lastseen:2026-10-08 19:00:38 UTC
Sightings:10

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter