MALICIOUS — 52de8154f370852b980e4590c1c9c6d8fd69f9c6d3114fd1f142cbb913fbc089
MALICIOUS — 52de8154f370852b980e4590c1c9c6d8fd69f9c6d3114fd1f142cbb913fbc089 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (96/100), attributed to the 0B66ABC5 family. 4 of 52 detection engines flagged it.
Identification
- SHA-256:
52de8154f370852b980e4590c1c9c6d8fd69f9c6d3114fd1f142cbb913fbc089 - SHA-1:
d33f70db75a56fb5582c0db2dd3e31954a9fc884 - MD5:
67faddc14eaee31563b10535ff463c47 - imphash:
80986dfc1534029bff6b2ea4ddfeb90c - ssdeep:
3072:pCrTo/0YxSOm0tQ9nLHbB9WPliBs2HWWEakGJm9uH:pCyi4QxL7B9WPli+yWWEaz3 - TLSH:
T1474328CC1CEDD4D2D1A9D2071DA8A9FC3A4EEC5B762B9379858A946720D21FB003217D - Submitted as: 52de8154f370852b980e4590c1c9c6d8fd69f9c6d3114fd1f142cbb913fbc089
- File type: pe · Size: 237568 bytes
- Verdict: malicious (96/100) · Family: 0B66ABC5
Detections (4 of 52 engines)
- ClamAV (daily): Win.Trojan.Acnu-7601993-0
- Microsoft Defender: PWS:Win32/Fareit!pz
- Emsisoft (Emergency Kit): Generic.Dacic.0B66ABC5.A.724C4AD8
- Kaspersky (KVRT): Worm.Win32.VBNA.bdmh
Why this verdict
The malicious score of 96/100 is the fusion of 3 weighted signals:
- ClamAV (daily) flagged Win.Trojan.Acnu-7601993-0 (rule
Win.Trojan.Acnu-7601993-0) - engine signal, weight 0.90, confidence 0.95 - Microsoft Defender flagged PWS:Win32/Fareit!pz (rule
PWS:Win32/Fareit!pz) - engine signal, weight 0.55, confidence 0.85 - Emsisoft (Emergency Kit) flagged Generic.Dacic.0B66ABC5.A.724C4AD8 (rule
Generic.Dacic.0B66ABC5.A.724C4AD8) - engine signal, weight 0.55, confidence 0.85
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
File paths
- C:\Program
More 0B66ABC5 samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report