SUSPICIOUS — 2ffbc8a866d557a4c5bc38138385f53f76495fdfc2e816c3c03a136fd4766132.elf

SUSPICIOUS — 2ffbc8a866d557a4c5bc38138385f53f76495fdfc2e816c3c03a136fd4766132.elf is a elf sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (61/100), attributed to the Modified family. 5 of 56 detection engines flagged it.

Identification

Source: MalwareBazaar · first seen 2026-08-02T00:00:00.000Z · SHA-256 verified

Detections (5 of 56 engines)

Why this verdict

The suspicious score of 61/100 is the fusion of 4 weighted signals:

Dynamic analysis

This sample is built for ARM, which no sandbox guest in our fleet executes, so it was not detonated. The absence of runtime behaviour here is a coverage gap on our side, not a finding about the sample.

Embedded URLs

Embedded domains

More Modified samples · Latest analyzed threats · ATT&CK coverage

Analyzed on MalwareAnalyzer by Cyble · Open interactive report