MALICIOUS — 7347f4bb307be58d4bfcc2ea6b81ca76cc868d486f91fa9fe57aead67b80b374
MALICIOUS — 7347f4bb307be58d4bfcc2ea6b81ca76cc868d486f91fa9fe57aead67b80b374 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (88/100), attributed to the Jqxm family. 4 of 55 detection engines flagged it, exhibiting 1 ATT&CK technique.
Identification
- SHA-256:
7347f4bb307be58d4bfcc2ea6b81ca76cc868d486f91fa9fe57aead67b80b374 - SHA-1:
1d887b7dbb25544a727787a5aed5ffc7fc2c1c2e - MD5:
64bc8bff98fda96bc26e6f5982f0d356 - imphash:
091c3348d1b292de4a2b1d61233c541c - ssdeep:
384:E3R/o+iaNskBi2vbF6ZaEM61qmUTMQF9bOH0:X+i0sei2DKaV8qXorU - TLSH:
T1DE2C09D91338B109C9B8D583688C8DCD60676F31F06E0B4A851AE62423FB8279D72B18 - Submitted as: 7347f4bb307be58d4bfcc2ea6b81ca76cc868d486f91fa9fe57aead67b80b374
- File type: pe · Size: 24576 bytes
- Verdict: malicious (88/100) · Family: Jqxm
Detections (4 of 55 engines)
- ClamAV (daily): Win.Downloader.Jqxm-9876004-0
- Microsoft Defender: Trojan:Win32/Zbot.DF!MTB
- Emsisoft (Emergency Kit): Trojan.Cud.Gen.1
- Kaspersky (KVRT): Trojan.Win32.APosT.cwc
MITRE ATT&CK
Why this verdict
The malicious score of 88/100 is the fusion of 2 weighted signals:
- ClamAV (daily) flagged Win.Downloader.Jqxm-9876004-0 (rule
Win.Downloader.Jqxm-9876004-0) - engine signal, weight 0.90, confidence 0.95 - communicate over HTTP (rule
communicate over HTTP) - capa signal, weight 0.30, confidence 0.60
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
File paths
- c:\windows\system32\Macromed\Flash\FlashInstall.log
More Jqxm samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report