MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 60d3103e0e00e4625da4cde69fb690a1ea7af1ec310250fc340d9a70f871bef5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 60d3103e0e00e4625da4cde69fb690a1ea7af1ec310250fc340d9a70f871bef5
SHA3-384 hash: 52b32db0a6b10ab0d9a31cf0f6d9bc46acfd54fff5435fe975867825d65399db71027db6aea26c28bb2144a1a78da4ec
SHA1 hash: 581e820b5841a823941c697784267b31ba9d9598
MD5 hash: 804b85b6bc4b4d83d667a6be0f53e6e2
humanhash: beryllium-skylark-batman-bakerloo
File name:Quote#.gz
Download: download sample
Signature AgentTesla
File size:368'673 bytes
First seen:2020-07-03 02:34:43 UTC
Last seen:Never
File type: gz
MIME type:application/x-rar
ssdeep 6144:OgLbhXhjHdaOuwAJj/7+iAp6rhSfL6UXOA5PmD1BLTZmzEk/idaVTSsYh4ZVJDps:OgfVav3+JgSzVOPwYiVGs4CW
TLSH 747423C66E8E9CF2D286BCC56C1C4F8568E0D69E9B42375C524C494E7F6A06AFCFD810
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
68
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-07-03 01:21:34 UTC
AV detection:
17 of 29 (58.62%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

gz 60d3103e0e00e4625da4cde69fb690a1ea7af1ec310250fc340d9a70f871bef5

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments