MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 ac55843d976b0d2599a714fce97fb1b67b3d1658bbdaab24f25c6e9860cf6b89. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: ac55843d976b0d2599a714fce97fb1b67b3d1658bbdaab24f25c6e9860cf6b89
SHA3-384 hash: b1fa36183091c1c4101ff3d5f05e913cfe6494138c546ae5b72e41906456fd3795beba0efc528e5e644423b2c9a0f557
SHA1 hash: a5d2e9c2a0825375b8c7afe9bee5138f642ad081
MD5 hash: fed404808088ea4f96ba21a28134bb7d
humanhash: mountain-five-undress-beryllium
File name:PoSample01.img
Download: download sample
Signature AgentTesla
File size:1'245'184 bytes
First seen:2020-03-20 16:37:34 UTC
Last seen:Never
File type: img
MIME type:application/x-iso9660-image
ssdeep 12288:UVrMSEyWPdJpwG7up/KHY/GyGFC7M87Gwxo6DAjRb:UGZD7udN/887M3wR
TLSH 5945E0CB56E89BC6C9BE99FDE0122141C238F026B503B34776EC90F136877929CA55ED
Reporter cocaman
Tags:AgentTesla img

Intelligence


File Origin
# of uploads :
1
# of downloads :
73
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Injector
Status:
Malicious
First seen:
2020-03-20 14:04:36 UTC
File Type:
Binary (Archive)
AV detection:
16 of 31 (51.61%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

img ac55843d976b0d2599a714fce97fb1b67b3d1658bbdaab24f25c6e9860cf6b89

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments