MALICIOUS — ec2468b2eba2dbb291dd1463766660c26d9c7a4db89cb2549944f85bacc760b4
MALICIOUS — ec2468b2eba2dbb291dd1463766660c26d9c7a4db89cb2549944f85bacc760b4 is a email sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (89/100), attributed to the Docusign112101 family. 1 of 54 detection engines flagged it.
Identification
- SHA-256:
ec2468b2eba2dbb291dd1463766660c26d9c7a4db89cb2549944f85bacc760b4 - SHA-1:
72119e98370133ae09ecbc417b86f673941767a2 - MD5:
663b7f27b2dcdf3fde3938e25c297a06 - ssdeep:
3072:IhRWv4TNrffCA7pnEu9XkuXXxiELfa5k+TxpFGtdVL:IhRWiZEqpsYfabxpFGBL - TLSH:
T1953C12523678F519E2012EE1812293ED43A75C36BD6C6DBC3F8288DED4D9F37A199404 - Submitted as: ec2468b2eba2dbb291dd1463766660c26d9c7a4db89cb2549944f85bacc760b4
- File type: email · Size: 120772 bytes
- Verdict: malicious (89/100) · Family: Docusign112101
Detections (1 of 54 engines)
- ClamAV (daily): Xls.Downloader.Docusign112101-9908076-0
Why this verdict
The malicious score of 89/100 is the fusion of 2 weighted signals:
- ClamAV (daily) flagged Xls.Downloader.Docusign112101-9908076-0 (rule
Xls.Downloader.Docusign112101-9908076-0) - engine signal, weight 0.90, confidence 0.95 - Suspicious email carrier: archive-attachment - static signal, weight 0.30, confidence 0.70
Embedded domains
- 250d4977c7d.com
- 6d645413fa.com
More Docusign112101 samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report