MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 2f0be0951081abc434210e859dd17d2a6e4dbe88b22cca50f4e7d3824b6beea9. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 2f0be0951081abc434210e859dd17d2a6e4dbe88b22cca50f4e7d3824b6beea9
SHA3-384 hash: 10cae23e5c4d3f4001ea051bfa1a706b4c6cb5b5687ed5fd419fdcd9e01c8c1fadf55fd92c639b98da4c17f70e960d6a
SHA1 hash: b598883095be094dd85075cfbf5c14482794de35
MD5 hash: 658e06c07c444f43b605f52410de0d8c
humanhash: pip-maryland-bakerloo-charlie
File name:Agency Nomination_ MT Richmond.rar
Download: download sample
Signature AgentTesla
File size:445'640 bytes
First seen:2020-06-09 04:40:36 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 12288:zkykK4SeD6mreR1qVXuzIT7uFNCXC3ncHSqfjVqQAui:4TSgqIGF4XCcy+Bi
TLSH 4994235579397C8C6F4348AD0F2CFC810EFAD413B88EA0DC5D9B1D1848A45A6EAB75F2
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
62
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-06-09 04:42:05 UTC
AV detection:
13 of 29 (44.83%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 2f0be0951081abc434210e859dd17d2a6e4dbe88b22cca50f4e7d3824b6beea9

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments