MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 62833dd76f30279e09571eb183d5d9853a4641d33811c49945cf472925158bda. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 62833dd76f30279e09571eb183d5d9853a4641d33811c49945cf472925158bda
SHA3-384 hash: 8cc662df264da7cc33698650044b982592b2ecad6c7295fe6b8233eeb0bd7b4b35664c0aba1d47f555cfd9ef4fac47c1
SHA1 hash: 50b16d634b75fd8712d008d3649ace2b3105d901
MD5 hash: 6cb3766894e06941f59a8b95a2ad8bbe
humanhash: victor-xray-nevada-maryland
File name:AWB & Shipping Doc.Img.ace
Download: download sample
Signature AgentTesla
File size:623'706 bytes
First seen:2021-02-22 06:31:40 UTC
Last seen:2021-02-26 00:08:42 UTC
File type: ace
MIME type:application/octet-stream
ssdeep 12288:bgG/MfKrj4BzsuW3uAYKVgDxCPDByfDoLgIo4c8lHGO157O/qMOF0Wz:trsNsXuC7g7eBo4HMO157yoF0Wz
TLSH 00D423039EFCFD2236D1547A248CD45D1E2631DCC39A43E2BC1F1A859EC77BD8684A99
Reporter GovCERT_CH
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
11
# of downloads :
83
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
ByteCode-MSIL.Infostealer.Fareit
Status:
Malicious
First seen:
2021-02-22 06:32:08 UTC
AV detection:
12 of 48 (25.00%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

ace 62833dd76f30279e09571eb183d5d9853a4641d33811c49945cf472925158bda

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments