MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 51bbd16ebbc1f0590239d9b04c9ba14a8c4d6535ea623138afc8b82819209fd2. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 51bbd16ebbc1f0590239d9b04c9ba14a8c4d6535ea623138afc8b82819209fd2
SHA3-384 hash: 975ca6c93a62eb246eeb02457615b0b55c0c8e720e010f1dade504ebd979223ddd308c16325d56bfa3bdf1aef691766b
SHA1 hash: 7ed2a1b246779bdfb01df48a0e8e4024cc2ea5f8
MD5 hash: 40db1c77f5c4b383eb31320e67e6b06f
humanhash: massachusetts-jupiter-bacon-march
File name:letter of intent.pdf.gz
Download: download sample
Signature AgentTesla
File size:424'687 bytes
First seen:2020-05-14 08:40:25 UTC
Last seen:Never
File type: gz
MIME type:application/x-rar
ssdeep 6144:ie+icDCtD/VVuVJcpFQGMcg4S5mEBkT8j9E4mRVVpTHMsY11xSsX+M/:j+BgD92GMc1S5Vkoj9E4mRdM/1RXb/
TLSH B794235C90F18BA5C74BBEFD248302FC3E49DDBA5541BBFE542D4F9A5E82120787A428
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
80
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-05-14 04:28:22 UTC
File Type:
Binary (Archive)
Extracted files:
1
AV detection:
18 of 31 (58.06%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

gz 51bbd16ebbc1f0590239d9b04c9ba14a8c4d6535ea623138afc8b82819209fd2

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments