MALICIOUS — 553c4307e162b6f6f29f250aca765d36bd6eec99884e0ecd642115c2fa0c7810
MALICIOUS — 553c4307e162b6f6f29f250aca765d36bd6eec99884e0ecd642115c2fa0c7810 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (99/100), attributed to the Zusy family. 6 of 56 detection engines flagged it.
Identification
- SHA-256:
553c4307e162b6f6f29f250aca765d36bd6eec99884e0ecd642115c2fa0c7810 - SHA-1:
48e6a347a7f92ce5992a67c40e5ce8735fe65c05 - MD5:
12ea3edee2f0c965f636e747253b66f5 - imphash:
f1a539a5b71ad53ac586f053145f08ec - ssdeep:
6144:SQxeLXNmN5adJDKnA6lYqMmOGJE+/WIV7++ISwydUmSmOF4RneHytWAZ:ScuJeA+dMmOGX/WsDUmSreReIv - TLSH:
T19A4723F90529877CF61D2390B8869F9E53319F810AB45A5EA4B3ADD03C3121B80FF959 - Submitted as: 553c4307e162b6f6f29f250aca765d36bd6eec99884e0ecd642115c2fa0c7810
- File type: pe · Size: 342472 bytes
- Verdict: malicious (99/100) · Family: Zusy
Detections (6 of 56 engines)
- MalwareAnalyser heuristics (entropy/packer): UPX
- ClamAV (daily): Win.Malware.Zusy-9957983-0
- Detect It Easy (packer/type): DIE:UPX
- Microsoft Defender: Trojan:Win32/Prepscram!pz
- Emsisoft (Emergency Kit): Gen:Variant.Virus.8
- Kaspersky (KVRT): Trojan.Win32.Agent.neyndy
Why this verdict
The malicious score of 99/100 is the fusion of 7 weighted signals:
- ClamAV (daily) flagged Win.Malware.Zusy-9957983-0 (rule
Win.Malware.Zusy-9957983-0) - engine signal, weight 0.90, confidence 0.95 - Microsoft Defender flagged Trojan:Win32/Prepscram!pz (rule
Trojan:Win32/Prepscram!pz) - engine signal, weight 0.55, confidence 0.85 - Emsisoft (Emergency Kit) flagged Gen:Variant.Virus.8 (rule
Gen:Variant.Virus.8) - engine signal, weight 0.55, confidence 0.85 - Kaspersky (KVRT) flagged Trojan.Win32.Agent.neyndy (rule
Trojan.Win32.Agent.neyndy) - engine signal, weight 0.55, confidence 0.85 - Detect It Easy (packer/type) flagged DIE:UPX (rule
DIE:UPX) - engine signal, weight 0.35, confidence 0.70 - MalwareAnalyser heuristics (entropy/packer) flagged UPX (rule
UPX) - engine signal, weight 0.35, confidence 0.70 - Packing/obfuscation: UPX, high-entropy-sections:UPX1 - static signal, weight 0.25, confidence 0.55
Dynamic analysis (windows)
0 behavior events · 0 ATT&CK techniques · 0 dropped files.
Runtime network
- none
File paths
- D:\Ecm
More Zusy samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report