MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 e464e83a54a331d5800be043fd8e489f6686499100667764b3bbe635b85fad78. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
AgentTesla
Vendor detections: 2
| SHA256 hash: | e464e83a54a331d5800be043fd8e489f6686499100667764b3bbe635b85fad78 |
|---|---|
| SHA3-384 hash: | 36389bd4defc22b99a6242641cd774b25f957b3fcf5d34e1a9890d571442f260e5c46e27d59513e87ffb0f91adde0aea |
| SHA1 hash: | 1ca58ba4d18f90f776bf452c00edb3b70ef803f8 |
| MD5 hash: | 6a2233e75fcaa6463838130adb3caeea |
| humanhash: | failed-mirror-fourteen-utah |
| File name: | Purchase Order 0909110 ETD10022020 I Estelle du te & Rolle Space S.p.A PO0909110.rar |
| Download: | download sample |
| Signature | AgentTesla |
| File size: | 552'990 bytes |
| First seen: | 2020-09-01 13:27:43 UTC |
| Last seen: | 2020-09-01 14:11:16 UTC |
| File type: | rar |
| MIME type: | application/x-rar |
| ssdeep | 12288:n9/+lmxlSW1jtttzWB//my5lZgg5EeSYo+A5g:n9/iMAsO/D+gqeSvfy |
| TLSH | F6C423479FD4A612A7076499198F3B3C322902035758DFAFA7DC16E90B80620F56E7F7 |
| Reporter | |
| Tags: | rar |
cocaman
Malicious emailFrom: "Kristina Miteva" <kristina.miteva@sitco-intl.co>
Received: from box.sitco-intl.co (box.sitco-intl.co [188.166.57.63])
Date: Tue, 01 Sep 2020 05:21:51 -0700
Subject: I: Estelle du te & Rolle Space S.p.A PO0909110
Attachment: Purchase Order 0909110 ETD10022020 I Estelle du te & Rolle Space S.p.A PO0909110.rar
Intelligence
File Origin
# of uploads :
2
# of downloads :
94
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2020-09-01 13:29:06 UTC
File Type:
Binary (Archive)
Extracted files:
17
AV detection:
16 of 29 (55.17%)
Threat level:
5/5
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Legit
Score:
0.00
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.