MALICIOUS — a8545c096ac73524ae6c843d4fbd33cb9b4f5705e547436f3172f44847bae4ce
MALICIOUS — a8545c096ac73524ae6c843d4fbd33cb9b4f5705e547436f3172f44847bae4ce is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (97/100), attributed to the Dacic family. 4 of 53 detection engines flagged it.
Identification
- SHA-256:
a8545c096ac73524ae6c843d4fbd33cb9b4f5705e547436f3172f44847bae4ce - SHA-1:
005a898e40c1d35a20bc420acb264abc21e5a457 - MD5:
ca81e545cba278628d01965c8a617499 - imphash:
1199983ecfa39759f48f02f47e8bc2f6 - ssdeep:
384:hdtXWiJCQxsEwvK3RpSSHuGQG2Rqm4YhwmuXVN6x4:hDXWipuE+K3/SSHgxbuX+K - TLSH:
T14E277D34919BB82DFE279A4758D04C8C6236437B607B2C8A13E7C28676F1D53E4461BB - Submitted as: a8545c096ac73524ae6c843d4fbd33cb9b4f5705e547436f3172f44847bae4ce
- File type: pe · Size: 16640 bytes
- Verdict: malicious (97/100) · Family: Dacic
Detections (4 of 53 engines)
- ClamAV (daily): Win.Trojan.Generic-9908396-0
- Microsoft Defender: Trojan:Win32/Dacic.SX!MTB
- Emsisoft (Emergency Kit): Gen:Variant.jaik.286639
- Kaspersky (KVRT): HEUR:Trojan.Win32.Agent.gen
Why this verdict
The malicious score of 97/100 is the fusion of 4 weighted signals:
- ClamAV (daily) flagged Win.Trojan.Generic-9908396-0 (rule
Win.Trojan.Generic-9908396-0) - engine signal, weight 0.90, confidence 0.95 - Microsoft Defender flagged Trojan:Win32/Dacic.SX!MTB (rule
Trojan:Win32/Dacic.SX!MTB) - engine signal, weight 0.55, confidence 0.85 - Emsisoft (Emergency Kit) flagged Gen:Variant.jaik.286639 (rule
Gen:Variant.jaik.286639) - engine signal, weight 0.55, confidence 0.85 - Embedded network infrastructure: 1.1.1.1 - static signal, weight 0.35, confidence 0.60
Dynamic analysis (windows)
1 behavior events · 0 ATT&CK techniques · 0 dropped files.
Runtime network
- none
Embedded IP addresses
- 10.180.0.115
- 1.1.1.1
File paths
- C:\ping_pong\win_client\Release\win_client.pdb
- U:\:c:j:q:y:
More Dacic samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report