MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9a14eaf2bcba252bedb425593a95b2c5972e10ed7f9c3f68122254a49803e38a. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 9a14eaf2bcba252bedb425593a95b2c5972e10ed7f9c3f68122254a49803e38a
SHA3-384 hash: d92d48d721691d0c3b355b14e0f184c752857d907f96cbfd0c5931c8e2bae7d536c29b87f254d092da7e70f602ebeb97
SHA1 hash: fae27c03e6bcb9d3694b69af293c5304584f9f47
MD5 hash: 28ba7a1a6ef55140ed5d320205ae3d55
humanhash: north-yellow-virginia-delta
File name:ORDERINQ3499904.iso
Download: download sample
Signature AgentTesla
File size:567'296 bytes
First seen:2021-04-01 15:40:15 UTC
Last seen:2021-04-01 15:41:02 UTC
File type: iso
MIME type:application/x-iso9660-image
ssdeep 6144:GySBtxWMG0MkTymRUZBw3JBjd4NrqFRiJ3yxkBOVmNSEdtdDpzao7xiHuq1ChR:GrABmBGBqFRiJ3yqumNSEdtdDpWoteC
TLSH 79C4CFB532D14B15F4BAEBF86461101083F5A42992E2D60D3E9C10DE1BB3FB1A5E6E73
Reporter fabjer
Tags:iso

Intelligence


File Origin
# of uploads :
2
# of downloads :
94
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
ByteCode-MSIL.Trojan.Taskun
Status:
Malicious
First seen:
2021-04-01 05:44:26 UTC
AV detection:
7 of 44 (15.91%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

iso 9a14eaf2bcba252bedb425593a95b2c5972e10ed7f9c3f68122254a49803e38a

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments