Wecod malware family
Wecod is a malware family tracked by MalwareAnalyzer by Cyble across 3 publicly analyzed samples. First seen 2026-08-14, most recently 2026-08-23. Observed ATT&CK techniques include T1112.
Corpus statistics
- Publicly analyzed samples: 3
- First seen: 2026-08-14
- Last seen: 2026-08-23
- Verdicts: malicious 3
- File types: pe 3
ATT&CK techniques used by Wecod
- T1112 - 1 sample
Recent Wecod samples
- e8252d061e9e2bdba82972158a2284345dc9c9260d2f6a9d86b42b204ce47a2c - malicious (2026-08-23)
- a9df4e7e73b65bfacc399ae119fc265bc6bfbdee23206ad9b70cc5b52833db75 - malicious (2026-08-22)
- cdecede66fdbf9a7453fb4b3fdb8c2e681fe5e859619b43355f7b53a48453921 - malicious (2026-08-14)
Frequently asked about Wecod
- What is Wecod?
- Wecod is a malware family tracked by MalwareAnalyzer by Cyble across 3 publicly analyzed samples. First seen 2026-08-14, most recently 2026-08-23. Observed ATT&CK techniques include T1112.
- How many Wecod samples have been analyzed?
- MalwareAnalyzer by Cyble holds 3 publicly analyzed samples attributed to Wecod, first seen 2026-08-14 and most recently 2026-08-23. This counts public submissions to this platform only, so it is a measure of what we have seen rather than of the family's total prevalence.
- What MITRE ATT&CK techniques does Wecod use?
- Across our Wecod samples the most frequently observed techniques are T1112 (1). Counts are the number of analyzed samples in which each technique was observed.
- What file types does Wecod use?
- Wecod samples in this corpus are distributed as pe (3).
- Is Wecod malicious?
- 3 of 3 analyzed Wecod samples were scored malicious by the fused verdict, which combines multi-engine static scanning, YARA and hash reputation with behavior captured during real sandbox detonation. Each report lists every signal that contributed to its score.
Latest analyzed threats · ATT&CK coverage across the corpus · Threat trends