MALICIOUS — Sampo_BOOT.IMA
MALICIOUS — Sampo_BOOT.IMA is a unknown sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (86/100), attributed to the UNOFFICIAL family. 1 of 47 detection engines flagged it.
Identification
- SHA-256:
d04e29918285146d3abdad6e588d85246480b79df34e2cb2bccade782174a230 - SHA-1:
c1ffc90478bf0002024107b707ced12764bc365e - MD5:
ded654c8bd5ea83898a5b2cde9d0bb49 - ssdeep:
192:/EiRPTEeoaRPTECRPTECRPTECRPTECRPTEh:smYeRYGYGYGYGYh - TLSH:
T199305428F4B4AC04C2E419A3D276292FDDBBBD9C71940522AE429FDD97400EB35F8497 - Submitted as: Sampo_BOOT.IMA
- File type: unknown · Size: 36864 bytes
- Verdict: malicious (86/100) · Family: UNOFFICIAL
Source: theZoo · first seen 2026-07-25T17:56:26.017Z · SHA-256 not source-verified
Detections (1 of 47 engines)
- ClamAV (daily): {HEX}bin.trojan.generic.sampo.105.UNOFFICIAL
Why this verdict
The malicious score of 86/100 is the fusion of 1 weighted signal:
- ClamAV (daily) flagged {HEX}bin.trojan.generic.sampo.105.UNOFFICIAL (rule
{HEX}bin.trojan.generic.sampo.105.UNOFFICIAL) - engine signal, weight 0.90, confidence 0.95
More UNOFFICIAL samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report