MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 9a6933bea2852385711a269495fa36ff5515686170cc060c7e5803fee1c18d15. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: 9a6933bea2852385711a269495fa36ff5515686170cc060c7e5803fee1c18d15
SHA3-384 hash: 7afa52a5200177ed1d431559593cb998003b8e3f8512ed67891973d6d8d98f77973c6ad701d961cf231e67c3c943ed63
SHA1 hash: ec0984fda62348d15f014404248c9c8f36abf098
MD5 hash: a291abca2b6194e1ecba538b0cc7870c
humanhash: zulu-magazine-zulu-india
File name:erew-436.rar
Download: download sample
Signature AgentTesla
File size:302'158 bytes
First seen:2020-12-24 13:16:37 UTC
Last seen:2020-12-26 05:58:07 UTC
File type: rar
MIME type:application/x-rar
ssdeep 6144:RmKH/LtAwuh/k57lguZtogmqLrGY01N0DvtZrE2dIN3T0TiDMJ60dT2:7/ZFuh/kNNnoPqLQ0jtZrEGGQTiDMJ6X
TLSH C45423499FEE4F3F3D6A1412268EE3CA410F902930B7737B60273AB75681A458D35B56
Reporter sergedroz
Tags:Agent Tesla

Intelligence


File Origin
# of uploads :
2
# of downloads :
633
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
8
Threat name:
Win32.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-12-24 10:02:57 UTC
AV detection:
19 of 46 (41.30%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar 9a6933bea2852385711a269495fa36ff5515686170cc060c7e5803fee1c18d15

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments