SUSPICIOUS — 0c392501e313ce6e687fae51258a6c9f9f3ac494afab4e0c844f29628705fd4c.bin
SUSPICIOUS — 0c392501e313ce6e687fae51258a6c9f9f3ac494afab4e0c844f29628705fd4c.bin is a unknown sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (58/100). 1 of 53 detection engines flagged it.
Identification
- SHA-256:
0c392501e313ce6e687fae51258a6c9f9f3ac494afab4e0c844f29628705fd4c - SHA-1:
bd1c8c660b520690f02704de09d83c21a1232100 - MD5:
282117be943c4ccea474f9a9adc01f97 - ssdeep:
6144:Lnynyn0nynnnynyncnynynynynWnynanynZnynyninynynynynknynEnyn3nyny5:HlZE6NDnF/QCdpOTg - TLSH:
T17D52F8D7E4C76C24D2F91EB3784B652DEA18644210ABB971CADB72C601C05C6783EB2D - Submitted as: 0c392501e313ce6e687fae51258a6c9f9f3ac494afab4e0c844f29628705fd4c.bin
- File type: unknown · Size: 948224 bytes
- Verdict: suspicious (58/100)
Source: MalShare · first seen 2026-09-08T23:45:22.896Z · SHA-256 verified
Detections (1 of 53 engines)
- Kaspersky (KVRT): HEUR:Trojan.Script.Generic
Why this verdict
The suspicious score of 58/100 is the fusion of 2 weighted signals:
- Kaspersky (KVRT) flagged HEUR:Trojan.Script.Generic (rule
HEUR:Trojan.Script.Generic) - engine signal, weight 0.55, confidence 0.85 - Embedded network infrastructure: https://files.catbox.moe/0em09p.zip - static signal, weight 0.35, confidence 0.60
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded URLs
- https://files.catbox.moe/0em09p.zip
Embedded domains
- files.catbox.moe
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report