MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 b3a5d73b31d152222ab912e63ee126814f3c5c3fdcbdc50ad6772bc6bc867c7c. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 15


Intelligence 15 IOCs YARA 3 File information Comments 1

SHA256 hash: b3a5d73b31d152222ab912e63ee126814f3c5c3fdcbdc50ad6772bc6bc867c7c
SHA3-384 hash: e426a91711f18b2c36df26fb3dd2442a7a8d1211572290e38114ff4451a9c583df621598d3897998a2b3e6a18f5ce36a
SHA1 hash: 0b2d8c7e724bd69287a0cbdfc763cd1a448caed3
MD5 hash: 203b77e03c015bb3e23cf818bf31827a
humanhash: jig-carbon-sad-lamp
File name:203b77e03c015bb3e23cf818bf31827a
Download: download sample
Signature AgentTesla
File size:746'496 bytes
First seen:2023-08-24 01:55:41 UTC
Last seen:Never
File type:Executable exe
MIME type:application/x-dosexec
imphash f34d5f2d4577ed6d9ceec516c1f5a744 (49'121 x AgentTesla, 20'132 x Formbook, 12'360 x SnakeKeylogger)
ssdeep 12288:sdfSRtw2lq3Pal3ZmtWbMMAM5JhXX+uDmtqKz5IXEJUXQ4hu3a58:st2lq3yNMtczJhXX+uKtqK5biXQ/
Threatray 5'584 similar samples on MalwareBazaar
TLSH T124F40213BA26FF7AC13A47F63C0851024B32ED5EA991E3155F8A71E56C31B02457AF2B
TrID 71.1% (.EXE) Generic CIL Executable (.NET, Mono, etc.) (73123/4/13)
10.2% (.EXE) Win64 Executable (generic) (10523/12/4)
6.3% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
4.3% (.EXE) Win32 Executable (generic) (4505/5/1)
2.0% (.ICL) Windows Icons Library (generic) (2059/9)
Reporter zbetcheckin
Tags:32 AgentTesla exe