MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 8962e6b282c279406c26d216fbb76647e457be2638a7226ae6a3eb18c9f02040. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 8962e6b282c279406c26d216fbb76647e457be2638a7226ae6a3eb18c9f02040
SHA3-384 hash: 9a4715eb61f00dc053c72782dfbe52ffb3422145dbf540483508301a84e1b387c4739f303ad1624a3290aa79235323b4
SHA1 hash: d110047a67b0232f538de4b79cd58f65de924040
MD5 hash: c642d0fbc0502bbfc6c9ef528e7578b5
humanhash: single-twenty-yankee-violet
File name:BITCOIN MINING.zip
Download: download sample
Signature AgentTesla
File size:1'455'372 bytes
First seen:2020-04-07 05:59:34 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:Kvb6wyQAXcLpp6PYF2tq+IEzf/6hM8K1HPy3jEzv1SGU+921WhZhayMXDV4iH:K0VsLTGYFHP6qi8awjEzv4E3hYXWw
TLSH 0265334A5D5BC3302A4F4FF5D2F0D6B806BDF9554391E8BEB5981C9E46E6F88820B708
Reporter cocaman
Tags:AgentTesla zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
86
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-04-07 06:36:07 UTC
File Type:
Binary (Archive)
Extracted files:
22
AV detection:
22 of 47 (46.81%)
Threat level:
  2/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip 8962e6b282c279406c26d216fbb76647e457be2638a7226ae6a3eb18c9f02040

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments