MALICIOUS — cf3f14ef1426276d807400007d7ca9533c0d37396925f50cd5e6b27af28e67a2
MALICIOUS — cf3f14ef1426276d807400007d7ca9533c0d37396925f50cd5e6b27af28e67a2 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (72/100), attributed to the Glupteba family. 3 of 55 detection engines flagged it.
Identification
- SHA-256:
cf3f14ef1426276d807400007d7ca9533c0d37396925f50cd5e6b27af28e67a2 - SHA-1:
35a644b4e73376340df95653de0cf1ca06fe16c1 - MD5:
1ca4fa02201643547a3a1ece6bb227d5 - imphash:
d41d8cd98f00b204e9800998ecf8427e - ssdeep:
24576:VbdcXpieZdScvhXifztRw61F8fDMpN9CsbPR58925v3Y:VxcZdZdQLtRFEDm9CsbA2VY - TLSH:
T18853022031B4BF06E65C35A951C0269D1C6B218A72C85357E061923B5CE2BFBB786E0F - Submitted as: cf3f14ef1426276d807400007d7ca9533c0d37396925f50cd5e6b27af28e67a2
- File type: pe · Size: 1036290 bytes
- Verdict: malicious (72/100) · Family: Glupteba
Detections (3 of 55 engines)
- Microsoft Defender: Trojan:Win32/Copak.C!MTB
- Trellix Stinger (McAfee): Glupteba-FTTQ!1CA4FA022016
- Kaspersky (KVRT): HEUR:Trojan.Win32.Generic
Why this verdict
The malicious score of 72/100 is the fusion of 2 weighted signals:
- Microsoft Defender flagged Trojan:Win32/Copak.C!MTB (rule
Trojan:Win32/Copak.C!MTB) - engine signal, weight 0.55, confidence 0.85 - Trellix Stinger (McAfee) flagged Glupteba-FTTQ!1CA4FA022016 (rule
Glupteba-FTTQ!1CA4FA022016) - engine signal, weight 0.55, confidence 0.85
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
More Glupteba samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report