MALICIOUS — 5c86c3aff4046d3fdca01645d05a4a44749ea4640cfbce863581d1fb9fc5a96c
MALICIOUS — 5c86c3aff4046d3fdca01645d05a4a44749ea4640cfbce863581d1fb9fc5a96c is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (91/100), attributed to the Mydoom family. 7 of 52 detection engines flagged it.
Identification
- SHA-256:
5c86c3aff4046d3fdca01645d05a4a44749ea4640cfbce863581d1fb9fc5a96c - SHA-1:
b54b2d7c8028400719dc1e5485ea6bc8c8409666 - MD5:
8216410504f5b3b45622b563128d0592 - imphash:
3a226e5a32d54c9874ff46ff138d22cb - ssdeep:
384:1vxBbK26lj5Id8SpHx9jLhsznnVxA1WmP5w7GGCJlqqwMyNVy:Dv8IRRdsxq1DjJcqfsy - TLSH:
T1A42DE1D801603CA7C1739A8598480A7CE1615F3150BD29CCDE23B4B55AFE5DFE7B22A2 - Submitted as: 5c86c3aff4046d3fdca01645d05a4a44749ea4640cfbce863581d1fb9fc5a96c
- File type: pe · Size: 28864 bytes
- Verdict: malicious (91/100) · Family: Mydoom
Detections (7 of 52 engines)
- MalwareAnalyser heuristics (entropy/packer): UPX
- ClamAV (daily): Win.Worm.Mydoom-90
- Detect It Easy (packer/type): DIE:UPX 1.24
- Kaspersky (KVRT): Email-Worm.Win32.Mydoom.m
- Microsoft Defender: Worm:Win32/Mydoom.O@mm
- Emsisoft (Emergency Kit): Worm.Generic.24461
- Trellix Stinger (McAfee): Obfuscated-FGB!hb
Why this verdict
The malicious score of 91/100 is the fusion of 3 weighted signals:
- ClamAV (daily) flagged Win.Worm.Mydoom-90 (rule
Win.Worm.Mydoom-90) - engine signal, weight 0.90, confidence 0.95 - Detect It Easy (packer/type) flagged DIE:UPX 1.24 (rule
DIE:UPX 1.24) - engine signal, weight 0.35, confidence 0.70 - Packing/obfuscation: UPX, high-entropy-sections:UPX1, UPX 1.24 - static signal, weight 0.25, confidence 0.55
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
More Mydoom samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report