MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bc084ac19c6ad6604408ae24ce27c3b81c6ab05d57e176954ea1de8d4a25de67. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: bc084ac19c6ad6604408ae24ce27c3b81c6ab05d57e176954ea1de8d4a25de67
SHA3-384 hash: 606220dc9394f8f05e9dc7048a1489f953d3bbb4710bc3505655a8fb232ceb8292da64a8b6daf2a0a1aca08a65f8a1dc
SHA1 hash: ad32b4c97e4605f9bef8e6e1e7e6ab2705076aaf
MD5 hash: 0900d146779904a9cc63eff6498933be
humanhash: magazine-glucose-solar-jig
File name:Cash Denomination Details.rar
Download: download sample
Signature AgentTesla
File size:426'377 bytes
First seen:2020-06-01 11:32:41 UTC
Last seen:Never
File type: rar
MIME type:application/x-rar
ssdeep 12288:S2GRMWon0bskfh+BclWO4gcXs4L/zwdM8wRp4K:eRMWFx+BcMVsWwM8wRp4K
TLSH CB9423A073DEC00D1F94CDFA4C6E9E4153196EC182D2E97ACC8B424B1D179CD3AE99AD
Reporter jarumlus
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
64
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.Agensla
Status:
Malicious
First seen:
2020-06-01 11:35:41 UTC
AV detection:
21 of 48 (43.75%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

rar bc084ac19c6ad6604408ae24ce27c3b81c6ab05d57e176954ea1de8d4a25de67

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments