MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 bf807849f22e9c09718c84f4f05a28c41f4d1b9638a4d92ee34df5188df6a24e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: bf807849f22e9c09718c84f4f05a28c41f4d1b9638a4d92ee34df5188df6a24e
SHA3-384 hash: 798f08a523faf8bf56b7d578f471978a4b36ec54ca30da21af73ae148dba4f7ad41ae81bb23f81204bf2dbfc98b41646
SHA1 hash: 8625282ff076ef51acdb4271894ee211bd132504
MD5 hash: 95e67424ff814240f2dbeaa5fcb6f86d
humanhash: five-snake-purple-steak
File name:Bank Details.iso
Download: download sample
Signature AgentTesla
File size:1'245'184 bytes
First seen:2021-02-21 15:51:55 UTC
Last seen:Never
File type: iso
MIME type:application/x-iso9660-image
ssdeep 6144:ox/MsVodTFqY70Ijt94zcXgXytWo2SYYItxMVZ64mVaFouUX8MmG9OxJrh:ENSd5vtjoztXAzYYPo4mVaFo6M7C
TLSH 7B4502003250E413E7D976785FB6DAB29764AC4C2904269336FC3F0FB7FD2A75A0A615
Reporter fabjer
Tags:AgentTesla iso

Intelligence


File Origin
# of uploads :
1
# of downloads :
152
Origin country :
n/a
Vendor Threat Intelligence
Result
Verdict:
MALICIOUS
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2021-02-19 12:50:07 UTC
AV detection:
12 of 47 (25.53%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

iso bf807849f22e9c09718c84f4f05a28c41f4d1b9638a4d92ee34df5188df6a24e

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments