MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 60ef05f30331052b3a9e8c9dee1933fea923a705c5b70ec878c1f645e52620f5. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 60ef05f30331052b3a9e8c9dee1933fea923a705c5b70ec878c1f645e52620f5
SHA3-384 hash: b7b1cfa9d2977418d207008090342bb7823ae0bed9aef1a4a1f28daebe9236614d8cdaf98b1dfceb18bda9c6a423acad
SHA1 hash: bcee09e5fab7a228719bdec7cc17b00c68f127bf
MD5 hash: 81b9d65615c6ae794775df5a2b47eb91
humanhash: ink-mobile-nineteen-burger
File name:SwiftCopy20200630_pdf.ace
Download: download sample
Signature AgentTesla
File size:372'773 bytes
First seen:2020-06-30 07:02:59 UTC
Last seen:2020-06-30 10:53:39 UTC
File type: ace
MIME type:application/octet-stream
ssdeep 6144:fgY4gDDikXy6sFnwRRF03bZ7vzw2U3r5mOOMA+udGVCcQFoON8zbd4u2SPe:WM3Xy6sFwRfAC2U3rDOMAf44rBxSG
TLSH 6B84238FB4AEA4212EF4065A686073676C2F19438D750F2D3172F7913A28BD29B7E135
Reporter jarumlus

Intelligence


File Origin
# of uploads :
2
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Infostealer.Fareit
Status:
Malicious
First seen:
2020-06-30 07:04:05 UTC
AV detection:
7 of 48 (14.58%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

ace 60ef05f30331052b3a9e8c9dee1933fea923a705c5b70ec878c1f645e52620f5

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments