4f237b5aa3ff4fc4e3014f693c27a1cba94fc24f3a6054c28d090592343c06a2
Classification: Malicious
4f237b5aa3ff4fc4e3014f693c27a1cba94fc24f3a6054c28d090592343c06a2 is a malicious file sample. Linked to Bitter activity. Detected by 57 antivirus engines.
Detection summary
- 57 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: BITTER (G1002)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Hazy Tiger | Maltiverse | 2023-01-20 04:13:01 | 2023-01-21 18:46:10 | malicious-activity | G1002 Bitter |
Tags
apt hazy tigerSample information
- SHA-256
4f237b5aa3ff4fc4e3014f693c27a1cba94fc24f3a6054c28d090592343c06a2- First indexed
- 2023-01-21 18:46:10
- Last updated
- 2025-11-11 06:21:30
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Trojan.Downloader.MSIL |
| AVG | Other:Malware-gen [Trj] |
| AhnLab-V3 | Trojan/Win.Generic.C5243591 |
| Alibaba | Trojan:MSIL/AgentTesla.d7c1fed6 |
| Antiy-AVL | Trojan/Win32.Kasablanka |
| Arcabit | Trojan.Generic.D3B5933E |
| Avast | Other:Malware-gen [Trj] |
| Avira | TR/Agent.gdun |
| BitDefender | Trojan.GenericKD.62231358 |
| CAT-QuickHeal | Trojan.YakbeexMSIL.ZZ4 |
| CTX | exe.trojan.msil |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.DownLoader45.19215 |
| ESET-NOD32 | MSIL/TrojanDownloader.Agent.NLP |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.GenericKD.62231358 (B) |
| F-Secure | Trojan.TR/Agent.gdun |
| Fortinet | MSIL/Kryptik.C265!tr |
| GData | MSIL.Trojan-Downloader.Agent.BKJ |
| Detected | |
| Ikarus | Trojan-Downloader.MSIL.Agent |
| Jiangmin | Trojan.PSW.MSIL.eomb |
| K7AntiVirus | Trojan-Downloader ( 00598a691 ) |
| K7GW | Trojan-Downloader ( 00598a691 ) |
| Kaspersky | HEUR:Trojan-PSW.MSIL.Stealer.gen |
| Kingsoft | malware.kb.c.952 |
| Lionic | Trojan.Win32.Stealer.12!c |
| Malwarebytes | Malware.AI.3149437667 |
| MaxSecure | Trojan.Malware.74396735.susgen |
| McAfeeD | Real Protect-LS!11ED3F8C1A8F |
| MicroWorld-eScan | Trojan.GenericKD.62231358 |
| Microsoft | Trojan:MSIL/AgentTesla!MTB |
| NANO-Antivirus | Trojan.Win32.Stealer.jsucgt |
| Paloalto | generic.ml |
| Panda | Trj/Chgt.AA |
| Rising | Stealer.Agent!8.C2 (KTSE) |
| Sangfor | Downloader.Msil.AgentTesla.V7gz |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | Artemis!Trojan |
| Sophos | Mal/Generic-S |
| Symantec | Trojan Horse |
| Tencent | Malware.Win32.Gencirc.13b74ef6 |
| TrellixENS | Artemis!11ED3F8C1A8F |
| TrendMicro | Trojan.MSIL.DOWNLOADER.AL |
| TrendMicro-HouseCall | Trojan.MSIL.DOWNLOADER.AL |
| VBA32 | Trojan.MSIL.InfoStealer.gen.U |
| VIPRE | Trojan.GenericKD.62231358 |
| Varist | W32/ABTrojan.JXLS-6952 |
| ViRobot | Trojan.Win.Z.Agent.5120.DO |
| VirIT | Trojan.Win32.MSIL.DKO |
| Yandex | Trojan.DL.Agent!pVXzXMJJzPw |
| Zillya | Downloader.Agent.Win32.490901 |
| ZoneAlarm | Mal/Generic-L |
| alibabacloud | Trojan[stealer]:MSIL/AgentTesla.Gen |
| huorong | TrojanDownloader/MSIL.Small.fm |