MALICIOUS — 1e4a8de48f2f57bb4c6942e74f9ecbcbbea9a3eee16cb9be0aaaa22bfd251a08
MALICIOUS — 1e4a8de48f2f57bb4c6942e74f9ecbcbbea9a3eee16cb9be0aaaa22bfd251a08 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (86/100), attributed to the Vobfus family. 5 of 55 detection engines flagged it.
Identification
- SHA-256:
1e4a8de48f2f57bb4c6942e74f9ecbcbbea9a3eee16cb9be0aaaa22bfd251a08 - SHA-1:
38ceaab2baf99cb01f0ea984cd1497fd57a1493a - MD5:
906c7f71e8b67eee844c073d92a36b1a - imphash:
8a7bce5d72bfa78e7b1dcf046c575634 - ssdeep:
1536:J5PorbHZPmkiw+667MIBf28zPJtC6IoD/QWgxektFAo11C:vPorbH1mLf2RxIv - TLSH:
T12048553DC68B14F7EAC002F57AA79A2EBD0B5860092F94C1F4B1697F58C0577A4182F9 - Submitted as: 1e4a8de48f2f57bb4c6942e74f9ecbcbbea9a3eee16cb9be0aaaa22bfd251a08
- File type: pe · Size: 376832 bytes
- Verdict: malicious (86/100) · Family: Vobfus
Detections (5 of 55 engines)
- ClamAV (daily): Win.Malware.Vobfus-9806879-0
- Microsoft Defender: Worm:Win32/Vobfus!pz
- Emsisoft (Emergency Kit): Gen:Variant.Jaik.48189
- Trellix Stinger (McAfee): Downloader-CJX.gen.j
- Kaspersky (KVRT): Trojan.Win32.VBKrypt.ayfz
Why this verdict
The malicious score of 86/100 is the fusion of 1 weighted signal:
- ClamAV (daily) flagged Win.Malware.Vobfus-9806879-0 (rule
Win.Malware.Vobfus-9806879-0) - engine signal, weight 0.90, confidence 0.95
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
More Vobfus samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report