MalwareBazaar Database
You are currently viewing the MalwareBazaar entry for SHA256 f70b9423f544e1135a5aa5862500a81b2c51ed85ecb0e63559ee791ac75abacb. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.
Database Entry
AgentTesla
Vendor detections: 4
| SHA256 hash: | f70b9423f544e1135a5aa5862500a81b2c51ed85ecb0e63559ee791ac75abacb |
|---|---|
| SHA3-384 hash: | dab29987e666c83fa9d3303b477234dd7055a6da09aff41fcc29012728cdd0f65c93199ba87070b49a67c32fc68017c8 |
| SHA1 hash: | f538e3978d51af3bf8c6d2cfea0cd15e8098f5f7 |
| MD5 hash: | 6300dc2d81156f3f149731fdcd8bddf0 |
| humanhash: | arizona-quebec-nevada-east |
| File name: | PO-2007-11131 LAP020271.zip |
| Download: | download sample |
| Signature | AgentTesla |
| File size: | 586'323 bytes |
| First seen: | 2020-08-03 13:10:58 UTC |
| Last seen: | 2020-08-12 07:15:57 UTC |
| File type: | zip |
| MIME type: | application/zip |
| ssdeep | 12288:/XPeKYAsg2lVS0lMMPr1b79uTtRWsNciCroARaCMCcbFxa8IJE0:/XPeKYAsTV7M6rhUTr6NaHFx6E0 |
| TLSH | 66C423C819F06C80936D294E0C9A355D35237EBDFC86B9B3F5CD6CA813812ABE15B11B |
| Reporter | |
| Tags: | AgentTesla |
Intelligence
File Origin
# of uploads :
2
# of downloads :
65
Origin country :
n/a
Vendor Threat Intelligence
Detection(s):
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-08-03 13:12:13 UTC
File Type:
Binary (Archive)
Extracted files:
4
AV detection:
19 of 29 (65.52%)
Threat level:
5/5
Detection(s):
Malicious file
Please note that we are no longer able to provide a coverage score for Virus Total.
Threat name:
Suspicious File
Score:
0.55
File information
The table below shows additional information about this malware sample such as delivery method and external references.
Malspam
Dropped by
AgentTesla
Delivery method
Distributed via e-mail attachment
Comments
Login required
You need to login to in order to write a comment. Login with your abuse.ch account.