MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 44b5c80ceb1475d0a189a29723148c889dd11425c5da05bb37add5737561fd1c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 44b5c80ceb1475d0a189a29723148c889dd11425c5da05bb37add5737561fd1c
SHA3-384 hash: 438b28af6dce8af3e5ec0fac5470a4fc8e11b0e82c7db729759a55750ac39409b17a927f41958b36e021b2a203621480
SHA1 hash: 5069c7c437367109598048344800afccef9072fd
MD5 hash: f4e02d9ba0edcc125c6551c237dcb097
humanhash: kansas-cup-tennis-sixteen
File name:long overdue statement- (2).zip
Download: download sample
Signature AgentTesla
File size:695'951 bytes
First seen:2020-07-02 11:20:46 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:o+U14Ei4Ls282/n2SmNGyhXOxxp68atMfczmreaN3ApnH6GzVyqhsedey:3U1FA2F2gYOxWliczmreayB6GzIqeed
TLSH 4FE433E9E856E30752F523C4FDEF989BC15EC02C1EFC8060A295249E1755FA3B74989C
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
69
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Spyware.Noon
Status:
Malicious
First seen:
2020-07-01 23:10:28 UTC
AV detection:
20 of 27 (74.07%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 44b5c80ceb1475d0a189a29723148c889dd11425c5da05bb37add5737561fd1c

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments