MALICIOUS — c0cf079ce94f81179714d8b0c068930846eb1a943cc3318c8514cfcc370dc011
MALICIOUS — c0cf079ce94f81179714d8b0c068930846eb1a943cc3318c8514cfcc370dc011 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (85/100), attributed to the VBInject family. 4 of 25 detection engines flagged it.
Identification
- SHA-256:
c0cf079ce94f81179714d8b0c068930846eb1a943cc3318c8514cfcc370dc011 - SHA-1:
26cccdfd9b916a5507a921ba33eb29e57b874e95 - MD5:
7f386afc36f4f1ac5268b28a6c3c7934 - imphash:
aea69256006e5003eb66eb7505fd85cb - ssdeep:
1536:4tdH3UyOEGYfHk2wW4cd9Lv2PElgW/6NoN274B/K51UtaHElfTczpqVar1/AgAI:SUxSHFzp+y6NoN2I0jASrq - TLSH:
T1AF4290C6917195C0D7A69FABBD80EAEDE18F2A5B282AE43C314B990710D30F7597103D - Submitted as: c0cf079ce94f81179714d8b0c068930846eb1a943cc3318c8514cfcc370dc011
- File type: pe · Size: 217088 bytes
- Verdict: malicious (85/100) · Family: VBInject
Detections (4 of 25 engines)
- Microsoft Defender: Worm:Win32/Vobfus!pz
- Emsisoft (Emergency Kit): Gen:Variant.VBInject.11
- Trellix Stinger (McAfee): VBObfus.ek
- Kaspersky (KVRT): Trojan.Win32.Jorik.Vobfus.ektc
Why this verdict
The malicious score of 85/100 is the fusion of 3 weighted signals:
- Microsoft Defender flagged Worm:Win32/Vobfus!pz (rule
Worm:Win32/Vobfus!pz) - engine signal, weight 0.55, confidence 0.85 - Emsisoft (Emergency Kit) flagged Gen:Variant.VBInject.11 (rule
Gen:Variant.VBInject.11) - engine signal, weight 0.55, confidence 0.85 - Trellix Stinger (McAfee) flagged VBObfus.ek (rule
VBObfus.ek) - engine signal, weight 0.55, confidence 0.85
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
Embedded domains
- sinainet.com.br
File paths
- C:\Program
More VBInject samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report