MALICIOUS — a11463bf176a39f72b5ab9c0e0401dbe0eb4be8d379b2d5fd5da21da0d2286e5.exe
MALICIOUS — a11463bf176a39f72b5ab9c0e0401dbe0eb4be8d379b2d5fd5da21da0d2286e5.exe is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (91/100). 7 of 55 detection engines flagged it.
Identification
- SHA-256:
a11463bf176a39f72b5ab9c0e0401dbe0eb4be8d379b2d5fd5da21da0d2286e5 - SHA-1:
5d073f25656f0f942bff1178c1a52404d63b2b17 - MD5:
39888bfe023e44fdd4fa5b3ab616ebf8 - imphash:
6ed4f5f04d62b18d96b26d6db7c18840 - ssdeep:
98304:4sccE/PujuuenaDR/OInFsmCRAXWLtDAR:pWujuuzDFsmCWWLtg - TLSH:
T13460333911134112C3AAE42AE7E847CF8AB410D947F522B6BD6FDCA401598CBF58B3E5 - Submitted as: a11463bf176a39f72b5ab9c0e0401dbe0eb4be8d379b2d5fd5da21da0d2286e5.exe
- File type: pe · Size: 3594240 bytes
- Verdict: malicious (91/100)
Source: MalwareBazaar · first seen 2026-08-02T00:00:00.000Z · SHA-256 verified
Detections (7 of 55 engines)
- MalwareAnalyser heuristics (entropy/packer): UPX
- Hash: abuse.ch ThreatFox: known-malicious-hash
- Detect It Easy (packer/type): DIE:UPX
- Microsoft Defender: Trojan:Win32/SalatStealer!rfn
- Emsisoft (Emergency Kit): Gen:Variant.Draftor.3958
- Trellix Stinger (McAfee): Trojan-JBNR!3456D35E0C39
- Kaspersky (KVRT): UDS:DangerousObject.Multi.Generic
Why this verdict
The malicious score of 91/100 is the fusion of 3 weighted signals:
- Hash: abuse.ch ThreatFox flagged known-malicious-hash (rule
known-malicious-hash) - engine signal, weight 0.90, confidence 0.95 - Detect It Easy (packer/type) flagged DIE:UPX (rule
DIE:UPX) - engine signal, weight 0.35, confidence 0.70 - Packing/obfuscation: UPX, high-entropy-sections:UPX1 - static signal, weight 0.25, confidence 0.55
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded domains
- 52.de
File paths
- W:\%
- k:\rF
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report