SUSPICIOUS — 245602641a780b4dfc973d155aeec4bf45b7d55f4221cf7057e2374b330b6c1f
SUSPICIOUS — 245602641a780b4dfc973d155aeec4bf45b7d55f4221cf7057e2374b330b6c1f is a script sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (41/100). 2 of 50 detection engines flagged it.
Identification
- SHA-256:
245602641a780b4dfc973d155aeec4bf45b7d55f4221cf7057e2374b330b6c1f - SHA-1:
1243ae4320f5c7f390e40bc03a710bb8a5c768da - MD5:
da447fd488785308d45c8e2a04c2ad36 - ssdeep:
96:Ql0kyCq/ULTiy2tHoppC2aclS+2fP68ku:Ql0Oq/YTiy2tHops2kzfPku - TLSH:
T1F517228631046FDFDB4DD1A7BF43588FEE3DA5D39B4308418A4C29531072C82B998729 - Submitted as: 245602641a780b4dfc973d155aeec4bf45b7d55f4221cf7057e2374b330b6c1f
- File type: script · Size: 3506 bytes
- Verdict: suspicious (41/100)
Detections (2 of 50 engines)
- Microsoft Defender: flagged
- Kaspersky (KVRT): HEUR:Trojan.Script.Generic
Why this verdict
The suspicious score of 41/100 is the fusion of 1 weighted signal:
- Obfuscated javascript script: dynamic-exec (rule
script-deobfuscation) - static signal, weight 0.55, confidence 0.75
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded domains
- intellecta.de
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report