MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 4915275e6259fce216580a63be93339904e95cd3aa18f1b9cf14781b4c5ed305. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 4915275e6259fce216580a63be93339904e95cd3aa18f1b9cf14781b4c5ed305
SHA3-384 hash: 4bf52cab4cdb44909f3b54d25ce5389b18165bcfb8f37682cb87f9f3a7985088855ca1655f5333b5102bae9d34a6b4ad
SHA1 hash: 2273327471da735a47b5019c8f0471dd726ec9f1
MD5 hash: 48cfb0347acce8f5a21c136822950a36
humanhash: ack-nuts-neptune-london
File name:GOLDEN SWIFT_ Appointment.rar
Download: download sample
Signature AgentTesla
File size:423'050 bytes
First seen:2020-06-22 04:31:05 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 6144:MFOevSEgr5gPlc6mND/42VRKRDXbBEzk9hdssKYf/EUaWuLU/67i2PHdYs21Qkk:Ag2lYDQJBE0eBA3fuL77i2PHdYtk
TLSH F39423291146C62D2BA4455CB1F1D1DABFAC7AC00045930CA779DDEA6BE1CCAFB91BCC
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
73
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Spyware.Negasteal
Status:
Malicious
First seen:
2020-06-22 04:33:03 UTC
AV detection:
17 of 31 (54.84%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 4915275e6259fce216580a63be93339904e95cd3aa18f1b9cf14781b4c5ed305

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments