MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 d26f2e7bff9dc20de5089820c6412a4dcce98fafc38043d285498097786d8624. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: d26f2e7bff9dc20de5089820c6412a4dcce98fafc38043d285498097786d8624
SHA3-384 hash: 280c263d579f455d34fb6fc6dd1bb108a45608c83aa0a8593e4d46c4f07a3cb700d634c6663d6e643c263981f597a194
SHA1 hash: 23c86719de2b8a972c31ba595b061a06298f477f
MD5 hash: 9e7a00cc39f931db276ca1a61e6dae42
humanhash: finch-quebec-sweet-juliet
File name:chat.zip
Download: download sample
File size:5'643'713 bytes
First seen:2022-04-16 05:08:27 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 98304:DepkdxsuAImSzZvJ/Zk3PBk4qQjVul8gFLmF8Yydjq5LoxrEwU8IVHuYEbXEEVFT:DfvsujvJxkkQjVuDNmlwj9EwU82HaDEE
TLSH T11746337AE71D1265F6CE8BBC18F407DED0A1F4EBCDC022FB5611A65249439A20B58B37
TrID 80.0% (.ZIP) ZIP compressed archive (4000/1)
20.0% (.PG/BIN) PrintFox/Pagefox bitmap (640x800) (1000/1)
Reporter adm1n_usa32
Tags:zip

Intelligence


File Origin
# of uploads :
1
# of downloads :
200
Origin country :
n/a
Vendor Threat Intelligence
Gathering data
Threat name:
ByteCode-MSIL.Trojan.AgentTesla
Status:
Malicious
First seen:
2022-04-16 05:09:21 UTC
File Type:
Binary (Archive)
Extracted files:
151
AV detection:
25 of 42 (59.52%)
Threat level:
  5/5
Gathering data
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Comments