SUSPICIOUS — 8ce3366d6af7b44e7a20b0a34614ac1f7ee38ddc08b8c00d8049dbcffade46ab
SUSPICIOUS — 8ce3366d6af7b44e7a20b0a34614ac1f7ee38ddc08b8c00d8049dbcffade46ab is a script sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (41/100). 2 of 53 detection engines flagged it.
Identification
- SHA-256:
8ce3366d6af7b44e7a20b0a34614ac1f7ee38ddc08b8c00d8049dbcffade46ab - SHA-1:
847190c9f3031b8592eeca674d62b66273c6dfaa - MD5:
a031ba4b091b90f346a6a76d8b0b3e3d - ssdeep:
384:Ggz9kBD26861V/wsVKIsvTEdpEsnmwo7QZbRfuejc4mmtsSu:G6cfBjA/mGSu - TLSH:
T1CE26244BF4457A8ECE0937E38E496C767A3EA755227F10C00368D343ADB9B933429259 - Submitted as: 8ce3366d6af7b44e7a20b0a34614ac1f7ee38ddc08b8c00d8049dbcffade46ab
- File type: script · Size: 13988 bytes
- Verdict: suspicious (41/100)
Detections (2 of 53 engines)
- Microsoft Defender: flagged
- Kaspersky (KVRT): HEUR:Trojan.Script.Generic
Why this verdict
The suspicious score of 41/100 is the fusion of 1 weighted signal:
- Obfuscated javascript script: dynamic-exec (rule
script-deobfuscation) - static signal, weight 0.55, confidence 0.75
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded domains
- this.name
- options.name
- www.roll-with-me.com
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report