baebf75e830cca2ca1ee10af3388cb81bf8e5867538071b8e643351920fed005.bin
Classification: Malicious
baebf75e830cca2ca1ee10af3388cb81bf8e5867538071b8e643351920fed005.bin is a malicious file sample. Linked to Tanglebot malware.
Detection summary
- 25 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: TANGLEBOT (S1069)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Tanglebot | Triage | 2026-04-03 16:14:20 | 2026-04-04 06:46:16 | malicious-activity | S1069 TangleBot |
Tags
tanglebot android evasion impact infostealer spyware trojan collection credential_accessSample information
- Filenames
- baebf75e830cca2ca1ee10af3388cb81bf8e5867538071b8e643351920fed005.bin
- SHA-256
baebf75e830cca2ca1ee10af3388cb81bf8e5867538071b8e643351920fed005- First indexed
- 2026-04-03 16:14:20
- Last updated
- 2026-04-04 07:05:29
Antivirus detections
| Engine | Detection |
|---|---|
| AhnLab-V3 | Trojan/Android.Agent.1226291 |
| Alibaba | Backdoor:Android/Tambir.279f61db |
| Avast-Mobile | Android:Evo-gen [Trj] |
| Avira | ANDROID/SMSSpy.FSNB.Gen |
| BitDefenderFalx | Android.Trojan.Dropper.ARH |
| CAT-QuickHeal | cld.android.banker.1646381808 |
| CTX | apk.trojan.banker |
| Cynet | Malicious (score: 99) |
| DrWeb | Android.SpyMax.65 |
| ESET-NOD32 | a variant of Android/Spy.Banker.BEQ |
| F-Secure | Malware.ANDROID/SMSSpy.FSNB.Gen |
| Fortinet | Android/Banker.BEQ!tr.spy |
| Detected | |
| Ikarus | Trojan.AndroidOS.Banker |
| K7GW | Trojan ( 005b0d4a1 ) |
| Kaspersky | HEUR:Backdoor.AndroidOS.Tambir.e |
| Lionic | Trojan.AndroidOS.Tambir.C!c |
| McAfee | Artemis!ED105124DD0C |
| NANO-Antivirus | Trojan.Android.Banker.jveqxt |
| Sophos | Android Packed App (PUA) |
| Symantec | Trojan.Gen.MBT |
| SymantecMobileInsight | AppRisk:Generisk |
| Tencent | a.privacy.BankBotSteal |
| Trustlook | Android.Malware.Spyware |
| Varist | ABSpyware.MLNG- |