MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 aead19916c165f7dbc47808c3ac84fe17246e76c75d2a0cf55d197bd123cb2e1. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: aead19916c165f7dbc47808c3ac84fe17246e76c75d2a0cf55d197bd123cb2e1
SHA3-384 hash: 131e6e709f0ced827db2bfbf9ef8d8faaa2551ec89489ad4411e81d7698de3d824119edead2bd166cea0e1443c48af6d
SHA1 hash: c0043c3f2c4cfab82e8ee8a11ae3e58af51189bc
MD5 hash: 59e9ca88abd8733257aa588b5bd79a2d
humanhash: stairway-papa-lemon-stairway
File name:updated Purchase Order.ace
Download: download sample
Signature AgentTesla
File size:489'294 bytes
First seen:2021-03-01 07:17:09 UTC
Last seen:2021-03-05 08:32:08 UTC
File type: ace
MIME type:application/octet-stream
ssdeep 12288:Ak/wv67p0loKt46Ljr99j4XXOB+LrSFXqaSQb:7wCN0yT6fJ9D4A
TLSH FAA423CA1C5329F4ED91C2EC78A052EA99BB12427BC560F41C891A6CCF141BA79D4FDE
Reporter GovCERT_CH
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
13
# of downloads :
89
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.AgentTesla
Status:
Malicious
First seen:
2021-03-01 05:12:12 UTC
AV detection:
13 of 48 (27.08%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

ace aead19916c165f7dbc47808c3ac84fe17246e76c75d2a0cf55d197bd123cb2e1

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments