MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 eb4504d9ed45d0b5f872dcdc786700e60c1092323ca353483f22179f8c2a6184. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



AgentTesla


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: eb4504d9ed45d0b5f872dcdc786700e60c1092323ca353483f22179f8c2a6184
SHA3-384 hash: 7197851b4323065019baedd50a88b5f7c0fcb46dfcc29582f7cf6c9abe74b30d20c63f2f30386025225f5399054541b3
SHA1 hash: bf643e8db72d16d8ff92f61148c3a8b090ccec08
MD5 hash: a44668353a2741fed2defaf15396a74e
humanhash: sad-kitten-east-summer
File name:Scan0016102020.zip
Download: download sample
Signature AgentTesla
File size:593'818 bytes
First seen:2020-10-16 07:46:57 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 12288:mAhB75gZflqx2WYsMdhSm2BbHPgVYcw7+fQNd8Zy5sMbq9rM97LCgvCzEKl+VZXJ:NhB7+ZN6yQnVgHE+kMy5sMsrM97LGzjK
TLSH 6FC423433417C12DA0AA2F12A3BDCA7AA1937B350D3772090028D759765A707DBBDFB9
Reporter GovCERT_CH
Tags:AgentTesla

Intelligence


File Origin
# of uploads :
1
# of downloads :
76
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
Win32.Trojan.Wacatac
Status:
Malicious
First seen:
2020-10-16 06:36:47 UTC
AV detection:
27 of 48 (56.25%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

AgentTesla

zip eb4504d9ed45d0b5f872dcdc786700e60c1092323ca353483f22179f8c2a6184

(this sample)

  
Dropped by
AgentTesla
  
Delivery method
Distributed via e-mail attachment

Comments