MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 795500fb22291b954df7d684c5c11a7fe838d4382b3a82864d3ad85815ea84fc. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 2


Intelligence 2 IOCs YARA File information Comments

SHA256 hash: 795500fb22291b954df7d684c5c11a7fe838d4382b3a82864d3ad85815ea84fc
SHA3-384 hash: 81cdb150cac340bcca3363c55eb86c3cb03a14d57ddc5ec4144ca602a56e57f476e1ad426cc03d2d74fc89046a1c8a9c
SHA1 hash: 44a699d3e8f165592efc9f0984a84fcbd7568171
MD5 hash: accb978b395c9146750261f63d1c9784
humanhash: gee-michigan-cold-kentucky
File name:Inquiry Form_pdf.ace
Download: download sample
Signature AgentTesla
File size:292'240 bytes
First seen:2020-07-02 15:08:48 UTC
Last seen:Never
File type: ace
MIME type:application/octet-stream
ssdeep 6144:X51TewUr1magfgHx2odSJhWCtyKeoJmSDsVWQw1gOCtd:X51TmxmpfK2DW0yKtzDsVWQ6HCtd
TLSH 2454221DE94DAF1B259AD2CE96D7A50321217D27A8C24A1CE21F1E7808D602F3AD7CD7
Reporter jarumlus

Intelligence


File Origin
# of uploads :
1
# of downloads :
79
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-07-02 15:10:06 UTC
AV detection:
18 of 29 (62.07%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

ace 795500fb22291b954df7d684c5c11a7fe838d4382b3a82864d3ad85815ea84fc

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments