MALICIOUS — virussign.com_41a0d5189ab84ecf098c466413e5b4a0.vir
MALICIOUS — virussign.com_41a0d5189ab84ecf098c466413e5b4a0.vir is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (86/100), attributed to the Obfus family. 4 of 52 detection engines flagged it.
Identification
- SHA-256:
e9a00371d2939340e5eb1aaa9fa03a341c6c567f3da1b789fa8bb51f504bfc8c - SHA-1:
930a6e2c90af3b13f2880f6714dcbcbd03f66d83 - MD5:
41a0d5189ab84ecf098c466413e5b4a0 - imphash:
62ec3dce1eba1b68f6a4511bb09f8c2c - ssdeep:
1536:4YlCJ8wm90ZIEba93D3oxlg5D3vfnFj92Lw:BCJHuf9zoxIXnFjOw - TLSH:
T175343923AE716983EEF4695994CAF83FF8E60873FD32C125602667B09603B57650C52C - Submitted as: virussign.com_41a0d5189ab84ecf098c466413e5b4a0.vir
- File type: pe · Size: 56320 bytes
- Verdict: malicious (86/100) · Family: Obfus
Source: VirusSign · first seen 2026-08-12T00:00:00.000Z · SHA-256 verified
Detections (4 of 52 engines)
- ClamAV (daily): Win.Trojan.Obfus-38
- Microsoft Defender: flagged
- Emsisoft (Emergency Kit): GenPack:Generic.Dacic.1.Backdoor.Hangup.A.004BF035
- Kaspersky (KVRT): Trojan-Proxy.Win32.Qukart.vih
Why this verdict
The malicious score of 86/100 is the fusion of 1 weighted signal:
- ClamAV (daily) flagged Win.Trojan.Obfus-38 (rule
Win.Trojan.Obfus-38) - engine signal, weight 0.90, confidence 0.95
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
More Obfus samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report