MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 557eb2fb58b6f85f4267282256f0f2d57e9f71fcb30ffb4bdea5dfb7f1c2ffc3. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 557eb2fb58b6f85f4267282256f0f2d57e9f71fcb30ffb4bdea5dfb7f1c2ffc3
SHA3-384 hash: 298497f1d483c44ef1023faab4791aff40355a7ea1a7ea8b65b7642e2d6c5a7142e3229efeb3435bc6b9204ec4a29ba7
SHA1 hash: ad78be891c12fe079742e4473ed48a1524bafe8a
MD5 hash: 4b5d789825f58cad5127c98c0ae2e919
humanhash: comet-pennsylvania-hydrogen-burger
File name:Product Requirement.zip
Download: download sample
File size:685'428 bytes
First seen:2020-06-02 07:45:59 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:EIcSEJw5jsvTpSONJeeN9Oo+NBaUw9dQAtfJ4MgC7imsmoJz8:EpJmcTpSONJPQNsBVgYim1oJY
TLSH ADE423772B76C7AC9E6F874776E96CD112C09AB3C3A8C342BCCF58D98C19693AC48151
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
60
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Agensla
Status:
Malicious
First seen:
2020-06-02 04:50:36 UTC
File Type:
Binary (Archive)
Extracted files:
4
AV detection:
14 of 31 (45.16%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

zip 557eb2fb58b6f85f4267282256f0f2d57e9f71fcb30ffb4bdea5dfb7f1c2ffc3

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments