MALICIOUS — 4cc0c6227c3fd7e27f0e8b4b4198d8fbd97cb658f4fd96a55d043b021fd4bd47
MALICIOUS — 4cc0c6227c3fd7e27f0e8b4b4198d8fbd97cb658f4fd96a55d043b021fd4bd47 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (86/100), attributed to the Cerbu family. 2 of 52 detection engines flagged it.
Identification
- SHA-256:
4cc0c6227c3fd7e27f0e8b4b4198d8fbd97cb658f4fd96a55d043b021fd4bd47 - SHA-1:
ba5e42b449040373d864c008525b8fdeb846ab1b - MD5:
1dc79ff2842da06885c0ebd25fa3e7ad - imphash:
d41d8cd98f00b204e9800998ecf8427e - ssdeep:
12288:imC2cSr3fdhDv6QWbTUF2tNIkQoDaHWIGy8lS:e2c6WRTUUt+HxHGy - TLSH:
T11C4E49CC23086709E2324F68BC528F9E1446B4D6907E381D6E83C63F1664CABF977665 - Submitted as: 4cc0c6227c3fd7e27f0e8b4b4198d8fbd97cb658f4fd96a55d043b021fd4bd47
- File type: pe · Size: 663367 bytes
- Verdict: malicious (86/100) · Family: Cerbu
Detections (2 of 52 engines)
- ClamAV (daily): Win.Malware.Cerbu-9936399-0
- Microsoft Defender: Trojan:Win32/Dridex!pz
Why this verdict
The malicious score of 86/100 is the fusion of 1 weighted signal:
- ClamAV (daily) flagged Win.Malware.Cerbu-9936399-0 (rule
Win.Malware.Cerbu-9936399-0) - engine signal, weight 0.90, confidence 0.95
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
File paths
- d:\agent\_work\3\s\src\vctools\crt\vcruntime\src\eh\std_type_info.cpp
- d:\agent\_work\3\s\src\vctools\crt\vcruntime\src\internal\per_thread_data.cpp
- d:\agent\_work\3\s\src\vctools\crt\vcruntime\src\eh\std_exception.cpp
- d:\agent\_work\3\s\src\vctools\crt\vcruntime\src\internal\winapi_downlevel.cpp
More Cerbu samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report