MALICIOUS — 1deee5e9d421eadece7845e07e6a95d0334af6982dd157ac11c3fcfe2b22377d
MALICIOUS — 1deee5e9d421eadece7845e07e6a95d0334af6982dd157ac11c3fcfe2b22377d is a macho sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (86/100), attributed to the Flashback family. 4 of 52 detection engines flagged it.
Identification
- SHA-256:
1deee5e9d421eadece7845e07e6a95d0334af6982dd157ac11c3fcfe2b22377d - SHA-1:
4c3e0e018a94e68ef7b45a2cf110c9359575823b - MD5:
723b6d2da6eaa2903f25c60649d3ff71 - ssdeep:
384:pTlA/68u3Hmr0owkHEM/ECy+4kYp3GoasO2K4vAj/aR:pTlg67X6twkRj4tjaLzaR - TLSH:
T1292D188D1266B79ACDF1C4B8E0945F9E54C28AC990B90EC8493B6147DADC8D32137277 - Submitted as: 1deee5e9d421eadece7845e07e6a95d0334af6982dd157ac11c3fcfe2b22377d
- File type: macho · Size: 27093 bytes
- Verdict: malicious (86/100) · Family: Flashback
Detections (4 of 52 engines)
- ClamAV (daily): Win.Trojan.Flashback-16
- Microsoft Defender: Backdoor:MacOS_X/Flashback.H
- Emsisoft (Emergency Kit): MAC.OSX.Trojan.FlashBack.L
- Kaspersky (KVRT): Trojan-Downloader.OSX.Flashfake.ab
Why this verdict
The malicious score of 86/100 is the fusion of 1 weighted signal:
- ClamAV (daily) flagged Win.Trojan.Flashback-16 (rule
Win.Trojan.Flashback-16) - engine signal, weight 0.90, confidence 0.95
Dynamic analysis (macos)
1 behavior events · 0 ATT&CK techniques · 0 dropped files.
Runtime network
- none
More Flashback samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report