MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 08bca46565efa5b5d173623ceaaa9716cd5162383dd49600a0fd2ecfd5900b93. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 08bca46565efa5b5d173623ceaaa9716cd5162383dd49600a0fd2ecfd5900b93
SHA3-384 hash: e6d301d72da38221a0857ead1f5e12e4940c563975e8de10387e06ba82d0a6c12a2fc5d815b8038d8247e79a34f0346d
SHA1 hash: 2d8aaacf8707361c5a4495ed051c00104d10d9b5
MD5 hash: 81d43038af4e3f84152f06ed76b3183a
humanhash: violet-eleven-river-idaho
File name:SWIFT COPY.zip
Download: download sample
Signature AgentTesla
File size:392'820 bytes
First seen:2020-06-27 23:18:41 UTC
Last seen:2020-06-27 23:46:44 UTC
File type: zip
MIME type:application/zip
ssdeep 6144:XVueisBWVnbXd649/I9MA3ju4lgXQq8MQaFNDGLCtMWiAe3Nxq8CvKXPxDhZgp94:IeVUVblTAzu6gx8MQOGLC7he3StKpdy4
TLSH 3884239533CC522FAC1A6B4A8128F74254E7E3675C5375BC2D1F8F7AC81006CAAF25E5
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
79
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-27 14:41:04 UTC
AV detection:
21 of 29 (72.41%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 08bca46565efa5b5d173623ceaaa9716cd5162383dd49600a0fd2ecfd5900b93

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments