MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 cabc2001a5f03d4fe747dd4578e53fc9e8b89135ada5b184c9e7c8838636829e. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 5


Intelligence 5 IOCs YARA File information Comments

SHA256 hash: cabc2001a5f03d4fe747dd4578e53fc9e8b89135ada5b184c9e7c8838636829e
SHA3-384 hash: 9becea489fe1a7fc5bdbd5ef9bf1ebb5f6ddc46d84298638900d0ac5b27c53f6ac068a16d45152464ab136fdc31ce0d0
SHA1 hash: 737ff4e0a70446b53b9a927852858cab9d9115f4
MD5 hash: 4cf74a2b62d9b10bd2f574b66221b2e9
humanhash: kentucky-georgia-sixteen-sixteen
File name:4cf74a2b62d9b10bd2f574b66221b2e9.exe
Download: download sample
Signature AgentTesla
File size:1'722'895 bytes
First seen:2021-01-09 08:53:06 UTC
Last seen:2021-01-09 10:42:13 UTC
File type:Executable exe
MIME type:application/x-dosexec
ssdeep 1536:Cb3a8pC69/LaKV5QSLc2aScPatDmkWlk11aBcjuOC1aHv4tJ/DuJcuQcd2c+hsfM:Z
TLSH A28536D888C8106CFCFBE4B521B22AC22F3EFDBA75549E0D606DA9351E11FA80E45D75
Reporter abuse_ch
Tags:AgentTesla exe

Intelligence


File Origin
# of uploads :
2
# of downloads :
347
Origin country :
n/a
Vendor Threat Intelligence
Malware family:
n/a
ID:
1
File name:
4cf74a2b62d9b10bd2f574b66221b2e9.exe
Verdict:
No threats detected
Analysis date:
2021-01-09 08:56:33 UTC
Tags:
n/a

Note:
ANY.RUN is an interactive sandbox that analyzes all user actions rather than an uploaded sample
Result
Verdict:
Malware
Maliciousness:
Result
Verdict:
MALICIOUS
Details
Windows PE Executable
Found a Windows Portable Executable (PE) binary. Depending on context, the presence of a binary is suspicious or malicious.
Result
Threat name:
Unknown
Detection:
suspicious
Classification:
n/a
Score:
21 / 100
Signature
Machine Learning detection for sample
Behaviour
Behavior Graph:
Result
Malware family:
n/a
Score:
  1/10
Tags:
n/a
Unpacked files
SH256 hash:
cabc2001a5f03d4fe747dd4578e53fc9e8b89135ada5b184c9e7c8838636829e
MD5 hash:
4cf74a2b62d9b10bd2f574b66221b2e9
SHA1 hash:
737ff4e0a70446b53b9a927852858cab9d9115f4
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Web download

AgentTesla

Executable exe cabc2001a5f03d4fe747dd4578e53fc9e8b89135ada5b184c9e7c8838636829e

(this sample)

  
Delivery method
Distributed via web download

Comments