MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 583d19c12d2a42d333c2edbffac8b0dc931056a6b4d823a0e3a24ce912c9982d. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 583d19c12d2a42d333c2edbffac8b0dc931056a6b4d823a0e3a24ce912c9982d
SHA3-384 hash: bdb50df660c9efac1ef65ea284b94046efba19bd126c11f27afa72ff1d26c0b87a4f74d0d4051cfca891f7f30e7a9f5b
SHA1 hash: afb83d6ec8aeedc521c5eedfbc06f3d1fc21a375
MD5 hash: 4863dd2f0d423a78497b9662c3287390
humanhash: comet-yellow-nineteen-mike
File name:INV-CFL002 19A.iso
Download: download sample
Signature AgentTesla
File size:415'744 bytes
First seen:2021-03-03 08:43:10 UTC
Last seen:Never
File type: iso
MIME type:application/x-iso9660-image
ssdeep 6144:b8LxBj6wyY0wH5yoeRQ+jseDVW4jB3EZ7/X9B8ThpjNtfol+sV1RcL:eDD5ReRQ+ZkqI0hpJtu1
TLSH 7F9412192596E5BFCD9417704BBAA636F6B7421547B2A3833F2C6C6E0F532C78B02B41
Reporter fabjer
Tags:AgentTesla iso

Intelligence


File Origin
# of uploads :
1
# of downloads :
121
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.AgentTesla
Status:
Malicious
First seen:
2021-03-02 23:35:17 UTC
AV detection:
6 of 46 (13.04%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

iso 583d19c12d2a42d333c2edbffac8b0dc931056a6b4d823a0e3a24ce912c9982d

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments