MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8842a14e347758a470038aedee5403e96e431e2218f6cad7c477ed815dc11f38. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 8842a14e347758a470038aedee5403e96e431e2218f6cad7c477ed815dc11f38
SHA3-384 hash: 013101355455bd2921208e5f8c5add1b8501f030ffc44c9aa7844b8cba775c1f54f9e9b0c20bcfe364bf75316391a053
SHA1 hash: 416af86595b01d98b93029e01af17fe3ecb14da8
MD5 hash: 0f9cce3ea0edfd6f41ff8a769f721631
humanhash: nevada-fillet-twelve-indigo
File name:PIAZZALE NEW URGENT PURCHASE ORDER LIST pdf.rar
Download: download sample
Signature AgentTesla
File size:396'958 bytes
First seen:2020-03-16 20:19:15 UTC
Last seen:2020-03-18 06:24:34 UTC
File type: rar
MIME type:application/x-rar
ssdeep 6144:KmyrMLzOpV058O+pFuaS6Wx/WdSmWTuH+YsMhd/WnLtQ5jieOqTvTggG:9POpea1FunWcBubzaSPOSbggG
TLSH D784239A45CC09E83E2416AC776433B46392FB32BBD2C510955B39038DEF11B6B1B3B9
Reporter cocaman
Tags:AgentTesla rar

Intelligence


File Origin
# of uploads :
2
# of downloads :
77
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Agensla
Status:
Malicious
First seen:
2020-03-16 18:45:00 UTC
File Type:
Binary (Archive)
Extracted files:
28
AV detection:
17 of 31 (54.84%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 8842a14e347758a470038aedee5403e96e431e2218f6cad7c477ed815dc11f38

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments