Agent Tesla - Detection Rate

VirusTotal detection statistics across 251 analyzed samples.

Last updated: 2026-05-16

Detection rates show how many antivirus engines on VirusTotal identify Agent Tesla samples as malicious. A high detection rate (30+ engines) means most AV vendors have signatures for the variant. Low or zero detection indicates recently packed or obfuscated samples that may bypass signature-based endpoint protection.

Why Detection Rate Matters

For SOC analysts and threat hunters, detection rate is a key indicator of variant freshness and evasion capability. When Agent Tesla operators release a new build with updated packing or obfuscation, detection rates drop temporarily until AV vendors update their signatures. This window of low detection is when organizations are most vulnerable. Monitoring this page helps you understand how well your current defenses cover Agent Tesla variants.

Recommended Actions

If you see undetected or low-detection samples, consider submitting them to your sandbox for behavioral analysis. Update your YARA rules to catch Agent Tesla patterns that signature-based detection misses. For the latest sample hashes to cross-reference, visit the Agent Tesla samples page. For network-level indicators, check the IOC page.

24/62
Avg Detection
251
Samples Analyzed
69
High Detection
0
Undetected

Detection Distribution

High (30+) 69 (27%)
Medium (15-29) 101 (40%)
Low (1-14) 81 (32%)
Undetected (0) 0 (0%)

Per-Sample Detection

SHA256 Detection Threat Name
9d195832da9b639b... 59/70 trojan.msil/agenttesla
446768b90ef97909... 59/70 trojan.msil/agenttesla
6f25b64efa6c3595... 56/72 trojan.msil/agenttesla
102aa3e8c18c183d... 56/69 trojan.msil/agenttesla
96adde04d7845d0b... 56/72 trojan.agenttesla/msil
812ff46e29476def... 56/69 trojan.msil/agenttesla
b3ab0dcd5aa22ccb... 55/71 trojan.msil/basic
3dac52fb06fdd36e... 54/72 trojan.msil/jalapeno
a2544365eb8d51ef... 54/70 trojan.msil/jalapeno
5e8267e4935b9120... 54/70 trojan.msil/basic
a99fa4567648892c... 53/71 trojan.autoit/formbook
e0964b455d755a2c... 53/70 trojan.msil/stealer
dc451dc92ca8c947... 52/68 trojan.autoit/autoinject
1d2db76233b09e35... 52/72 trojan.msil/jalapeno
74ac43c8bc7fd48d... 52/68 trojan.msil/darktortilla
d50dc6ec340746e7... 52/70 trojan.msil/basic
ecac6d81c925b067... 51/71 trojan.autoit/auitinj
eeaaf1a831b3fb07... 51/69 trojan.autoit/autoinject
aa9a26dbe5fcfab9... 51/72 trojan.tedy/etyk
aa444e210c232d19... 51/72 trojan.tedy/agensla
89d8a5c61f78e93f... 50/71 trojan.msil/jalapeno
d2bbb4a1976cda48... 50/72 trojan.msil/basic
98472b134ae42713... 49/72 trojan.tedy
9f8a5b64565e4bda... 49/71 trojan.msil/loki
d2905e367942c640... 48/67 trojan.autoit/agensla
3f51bc6dce142e12... 48/70 trojan.msil/genie
ba5667043566050e... 48/68 trojan.msil/krypt
765e69564a235c9e... 46/72 trojan.msil/agensla
ce88a6ba648105ba... 46/70 trojan.msil/basic
cf594e3556e5a225... 45/70 trojan.msil/loki
1bcef2581d32b1f6... 45/71 trojan.msil/agensla
c38ce940408c9ec3... 45/68 trojan.msil/agensla
8d7252df516b2151... 44/68 trojan.generickdq/gamehack
d3030deea9a49c1a... 44/72 trojan.msil/agenttesla
e4ca434fb241974f... 44/72 trojan.autoit/auitinj
6f8ba0c5c6733bf2... 44/64 trojan.msil/genie
646fbc1fad26ad07... 44/66 trojan.minix/guloader
221367d0998608cb... 43/71 trojan.minix/nsis
458006548ab9c613... 43/72 trojan.guloader/filerepmalware
bf70216afcd00c6f... 43/72 trojan.msil/msilheracles
d3ad3af0b8d43b57... 43/71 trojan.msil/mardom
a52d7e811609cce5... 42/70 trojan.minix/guloader
494b7386dd151928... 42/71 trojan.msil/agensla
4e3a83b32bfb612a... 42/69 trojan.msil/basic
149bf791a0d8a880... 41/69 trojan.autoit/auitinj
2a66517cedacb808... 41/71 trojan.tedy/agensla
f1eb6a131e6e6244... 41/63 trojan.msil/barys
2ff1097ed1f607c9... 40/70 trojan.autoit/autoinject
81f89ff8478a91e0... 40/69 trojan.msil/genie
00f5a50925c01840... 40/72 trojan.msil/lazy