MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bd0b05f44da4bfae1b8843b6837a02dacbd9d0a4a677cbe3ede32596200b7944. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 3


Intelligence 3 IOCs YARA File information Comments

SHA256 hash: bd0b05f44da4bfae1b8843b6837a02dacbd9d0a4a677cbe3ede32596200b7944
SHA3-384 hash: d6b251345534e50dcdd7281aad9422f7e04cc8e327c3c9df811f4d5705182f698cf45ca2363dc1145bb16c5f27f35a56
SHA1 hash: 0b4cb97be882301e14e7e302ed5fc42118610e3c
MD5 hash: ce756b553a1c04111282d08241b90c1f
humanhash: salami-five-november-papa
File name:DINTEC Order 28012021.gz
Download: download sample
Signature AgentTesla
File size:696'099 bytes
First seen:2021-01-29 07:37:39 UTC
Last seen:Never
File type: gz
MIME type:application/x-rar
ssdeep 12288:2OYWkUpxVIqtWVETuF81v6KDedmGOAGamG9Tpro:2gLx2qtWVETO8J6iedmGzhtro
TLSH 50E4232C1144A02B0F6307C2519C73EF5AE7B353FF4355569A2FAEB6F19C98396A04E4
Reporter fabjer
Tags:gz

Intelligence


File Origin
# of uploads :
1
# of downloads :
101
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2021-01-28 08:21:33 UTC
AV detection:
12 of 28 (42.86%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

gz bd0b05f44da4bfae1b8843b6837a02dacbd9d0a4a677cbe3ede32596200b7944

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments