MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 51f6e3c5013c63ca230b679297d0f7e64da39c61f789ffd48235e74f53867b9b. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 51f6e3c5013c63ca230b679297d0f7e64da39c61f789ffd48235e74f53867b9b
SHA3-384 hash: 726849d71b422fa891ca04753794d37390184b2c2a1e92236555f8717ab08e46d1b7afd10cd47b6f7eb14458cde34b53
SHA1 hash: 07ec475438d61b9602e0f65c7136127c3fb701b3
MD5 hash: ebfe8c8eaba378c1748c97cd751b45be
humanhash: beryllium-minnesota-fish-colorado
File name:C.V. - application letter.zip
Download: download sample
Signature AgentTesla
File size:590'793 bytes
First seen:2021-01-12 09:37:32 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:HpSdaVWXUeh4I/ngLUQty4CyHFe7NhmEaat996seZ:EdUWXUjCngLNnC1hVNt9kseZ
TLSH 8CC423E7169E5EB70C6FC0D505544C3A5A71664A80C831C282BB5A72AE4F6F3B4CF49B
Reporter GovCERT_CH
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
159
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Bulz
Status:
Malicious
First seen:
2021-01-12 09:38:05 UTC
AV detection:
14 of 46 (30.43%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 51f6e3c5013c63ca230b679297d0f7e64da39c61f789ffd48235e74f53867b9b

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments