MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 a7b35545eed6842404565f82c8bd693d9147dafdfa7e53f9b85ae5993287c414. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: a7b35545eed6842404565f82c8bd693d9147dafdfa7e53f9b85ae5993287c414
SHA3-384 hash: abca7632ae9554ace213d6cbc94e919f95610451f0e14708797e0214e4671062550c1c40474a5ca3e2a4c24e78e38dde
SHA1 hash: 953c6e17c2bfce4777d7aee153a54bb213bc8a19
MD5 hash: bdf5c2bdefb2a754283e16a4f5f7b2cc
humanhash: nineteen-pennsylvania-three-xray
File name:0986535 VSL.xlsx.zip
Download: download sample
Signature AgentTesla
File size:83'870 bytes
First seen:2020-09-25 08:26:27 UTC
Last seen:2020-09-25 12:25:18 UTC
File type: zip
MIME type:application/zip
ssdeep 1536:8c5mcoZC0Xt/14xcU0io1a8t2bk80RmU/tPzk3MH6Vc+NJyWJpXPSnXCz:8c5mcoNd/ed+1FnrRmCzoMH6VTyWXXP5
TLSH 9F8302EF238FEEC12A59C1BD9C769C9920E423F5D311B37DA59900E91929431E4BFE90
Reporter FORMALITYDE
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
3
# of downloads :
96
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Infostealer.Agensla
Status:
Malicious
First seen:
2020-09-25 07:20:11 UTC
File Type:
Binary (Archive)
Extracted files:
2
AV detection:
23 of 29 (79.31%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip a7b35545eed6842404565f82c8bd693d9147dafdfa7e53f9b85ae5993287c414

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments