MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4774f1a474d46ccab2dd8608a78d41f9cc0365c7f106608641c33a46c9fe86e3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 4774f1a474d46ccab2dd8608a78d41f9cc0365c7f106608641c33a46c9fe86e3
SHA3-384 hash: 3aba101f11c1d94069d72aae51759128bf1e6886682ce12d7ef7e32e561a29f5404e3b1c7f4ecef90755c633550be415
SHA1 hash: 07897e3c1a0d2e6874df1b777a5b7c690b1dd510
MD5 hash: 1d31a19b07378a7745a685d094737e97
humanhash: hydrogen-kitten-london-paris
File name:Candidate_list.zip
Download: download sample
Signature AgentTesla
File size:320'857 bytes
First seen:2020-07-13 04:05:53 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 6144:em9GZvgMG+I2Q2YbKciFxI3S3fYdoduzyFmae+6PaV3k3XJTvD8/g:ewGV0h92YTiTIioo6ykOOKUHJTvD8o
TLSH 77642379FC50A972BE65EF7EE3D477960E3FDA824B541E8E8D57426C942180C40053FA
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-07-13 04:07:04 UTC
AV detection:
22 of 29 (75.86%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 4774f1a474d46ccab2dd8608a78d41f9cc0365c7f106608641c33a46c9fe86e3

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments