SUSPICIOUS — ormma_bridge.js
SUSPICIOUS — ormma_bridge.js is a script sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (41/100). 0 of 50 detection engines flagged it.
Identification
- SHA-256:
0bd2c774105e75d0a7e428cad3a6e0141082aa4ae02f3dece60f6f181c224cae - SHA-1:
e9006135da1490b3d2625f755c4327cca115c24f - MD5:
2ac9114cd9e0765e54f355657bdd5290 - ssdeep:
192:qTaJLeYmKk9YngpPYbg7B2txuqCHnoUbvCbRwrWAvj5YXMpy44UvSmpfkpzJmVkh:qTaJsKjL2mn69jefT - TLSH:
T13C24422E725FF9DF5ACB80EC1C0E952F6BA358EB11948080814C9E578D07EA32D456F6 - Submitted as: ormma_bridge.js
- File type: script · Size: 11521 bytes
- Verdict: suspicious (41/100)
Detections (0 of 50 engines)
No engine flagged this sample.
Why this verdict
The suspicious score of 41/100 is the fusion of 1 weighted signal:
- Obfuscated javascript script: dynamic-exec (rule
script-deobfuscation) - static signal, weight 0.55, confidence 0.75
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report