MALICIOUS — Quax_A_BOOT.IMA
MALICIOUS — Quax_A_BOOT.IMA is a unknown sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (92/100), attributed to the UNOFFICIAL family. 3 of 47 detection engines flagged it, exhibiting 1 ATT&CK technique.
Identification
- SHA-256:
6bc1d767c96b93518f185cfa1eede06fabe2c1c8968160a02e26b0fcec4bc35b - SHA-1:
e66f030641e19797b6550577d9cff11ac998a19c - MD5:
ba02f4502d6ca67ea5033aebce28a36d - ssdeep:
24576:of91K8ChpC66XvP/pOK+FfgZ6rvI6cgeCX028BGH0h:o11KtpSXv529yGsgeCXIGUh - TLSH:
T1C955121BE35C8C8FC496392BC3508B4CA241CFD7E955594EFF6219B2978E4836B5B082 - Submitted as: Quax_A_BOOT.IMA
- File type: unknown · Size: 1234944 bytes
- Verdict: malicious (92/100) · Family: UNOFFICIAL
Source: theZoo · first seen 2026-07-25T17:41:26.009Z · SHA-256 not source-verified
Detections (3 of 47 engines)
- capa (capabilities): beacon to command-and-control
- MalwareAnalyser heuristics (entropy/packer): high-entropy-blob
- ClamAV (daily): {HEX}bin.trojan.generic.quox.103.UNOFFICIAL
MITRE ATT&CK
Why this verdict
The malicious score of 92/100 is the fusion of 3 weighted signals:
- ClamAV (daily) flagged {HEX}bin.trojan.generic.quox.103.UNOFFICIAL (rule
{HEX}bin.trojan.generic.quox.103.UNOFFICIAL) - engine signal, weight 0.90, confidence 0.95 - beacon to command-and-control (rule
beacon to command-and-control) - capa signal, weight 0.45, confidence 0.80 - Packing/obfuscation: high-entropy-blob - static signal, weight 0.25, confidence 0.55
File paths
- j:\la
More UNOFFICIAL samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report