MALICIOUS — ec569ed20ef1ea7f64d039e0c55f03f93726e98e2f84c56ffa56fc1d9fce8e81
MALICIOUS — ec569ed20ef1ea7f64d039e0c55f03f93726e98e2f84c56ffa56fc1d9fce8e81 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (86/100), attributed to the Crypted family. 4 of 55 detection engines flagged it.
Identification
- SHA-256:
ec569ed20ef1ea7f64d039e0c55f03f93726e98e2f84c56ffa56fc1d9fce8e81 - SHA-1:
95bdab366ddcc2cf68c7c39eb2e77f6bf023f7d3 - MD5:
d605725f604c217dd9ca96a61b1e4d99 - imphash:
95e6f8741083e0c7d9a63d45e2472360 - ssdeep:
3072:/mkSNvvG6NxXkXBmgkyI1KhZA87nUaXbPOJkyI1KhZAh:/mkwHG6NxUX4gCKDAoTOJCKDAh - TLSH:
T1E941D2EE8387EE43EB8C572B291CEC1D99311E6858E3E5559A471B34AE0F2F30841539 - Submitted as: ec569ed20ef1ea7f64d039e0c55f03f93726e98e2f84c56ffa56fc1d9fce8e81
- File type: pe · Size: 186368 bytes
- Verdict: malicious (86/100) · Family: Crypted
Detections (4 of 55 engines)
- ClamAV (daily): Win.Trojan.Crypted-36
- Microsoft Defender: Backdoor:Win32/Berbew!pz
- Emsisoft (Emergency Kit): GenPack:Backdoor.Hangup.B
- Kaspersky (KVRT): Trojan-Spy.Win32.Qukart.af
Why this verdict
The malicious score of 86/100 is the fusion of 1 weighted signal:
- ClamAV (daily) flagged Win.Trojan.Crypted-36 (rule
Win.Trojan.Crypted-36) - engine signal, weight 0.90, confidence 0.95
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
More Crypted samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report