MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 32c4d08d39e8f0ac814578489513a163ed60cc50a67d4d8b1b13da2f875cb66f. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 32c4d08d39e8f0ac814578489513a163ed60cc50a67d4d8b1b13da2f875cb66f
SHA3-384 hash: 18a78e5e37ffc4b37da4f996d6b4584b658475bbbaba19799a34a027589a82d9b25a0ff36537e1dfbaaa992d250e3e87
SHA1 hash: 179179786123e7386750d3397f4a3c4f86e15a18
MD5 hash: 071f97d8dabd9827b0c0f8e7a0f0bcc5
humanhash: chicken-pizza-aspen-zulu
File name:Quotation BID for FLORADYE-7875657875sn789894.zip
Download: download sample
Signature AgentTesla
File size:929'909 bytes
First seen:2020-11-19 02:33:12 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:E4VCu7xvuieOX6Ga/b5SKeq4BtFzfDcIhXBlVCdh31OSiSpkqUP6q:D2ieOXvQb5SKeqUrspUSq
TLSH AE1533A7E7FB90F86751B3E3A8D7202D544067D21106A6E8C4FA22D61E9D7D2477EC0C
Reporter GovCERT_CH
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
106
Origin country :
n/a
Vendor Threat Intelligence
Result
Gathering data
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-11-18 04:55:34 UTC
AV detection:
21 of 28 (75.00%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 32c4d08d39e8f0ac814578489513a163ed60cc50a67d4d8b1b13da2f875cb66f

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments