MALICIOUS — virussign.com_da4cb71b1aa2148f4a15fd7af8a34b30.vir
MALICIOUS — virussign.com_da4cb71b1aa2148f4a15fd7af8a34b30.vir is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (86/100), attributed to the Obfus family. 4 of 52 detection engines flagged it.
Identification
- SHA-256:
d2ea42c4b445dea8e8ccc8cc17b9cdf2c5c6accbc3147fb269826da8424affec - SHA-1:
dcb7cc5336a9f6b6dd8eee105ecdd66999eaf348 - MD5:
da4cb71b1aa2148f4a15fd7af8a34b30 - imphash:
73bd81c5b63ac89a8b9ee1b9e71a8a17 - ssdeep:
1536:kXRpbyGxF5u5uBpN4+9usNirzTGt10ANMRIVa:KmG45a9wrzlANMOa - TLSH:
T171379DB97D233B59CE5CA2888AC4B53C667228335D33B6946454F4F869C4A674C7033B - Submitted as: virussign.com_da4cb71b1aa2148f4a15fd7af8a34b30.vir
- File type: pe · Size: 75954 bytes
- Verdict: malicious (86/100) · Family: Obfus
Source: VirusSign · first seen 2026-08-12T00:00:00.000Z · SHA-256 verified
Detections (4 of 52 engines)
- ClamAV (daily): Win.Trojan.Obfus-38
- Microsoft Defender: Backdoor:Win32/Padodor.SK!MTB
- Emsisoft (Emergency Kit): Gen:Trojan.ShellObject.eCX@aqyJu!e
- Kaspersky (KVRT): Backdoor.Win32.Padodor.gen
Why this verdict
The malicious score of 86/100 is the fusion of 1 weighted signal:
- ClamAV (daily) flagged Win.Trojan.Obfus-38 (rule
Win.Trojan.Obfus-38) - engine signal, weight 0.90, confidence 0.95
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
More Obfus samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report