MALICIOUS — f75dfba96dade1f5145da170e7d8cb8866af9deec2ecd8623996ed01d1b20d00
MALICIOUS — f75dfba96dade1f5145da170e7d8cb8866af9deec2ecd8623996ed01d1b20d00 is a pe sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (89/100), attributed to the Juko family. 4 of 52 detection engines flagged it, exhibiting 2 ATT&CK techniques.
Identification
- SHA-256:
f75dfba96dade1f5145da170e7d8cb8866af9deec2ecd8623996ed01d1b20d00 - SHA-1:
701fd7a69466f72ec47b177e95d7a9b62e0c2de0 - MD5:
1a07fb1179ccfbe3f2992173e0f2f24a - imphash:
170193414cc4abf0ae27dc2a19d74879 - ssdeep:
768:qZL/0F24lercjO4sTZg5ZLvn2IuWZ0kqKNPWQHpU:OLsF2Kerc64sTiX2IV0DhuU - TLSH:
T1B32F396747309602F391A68B55403F4DB0B6A8EE3536C7518EE2B57E8BE045738B847C - Submitted as: f75dfba96dade1f5145da170e7d8cb8866af9deec2ecd8623996ed01d1b20d00
- File type: pe · Size: 32788 bytes
- Verdict: malicious (89/100) · Family: Juko
Detections (4 of 52 engines)
- ClamAV (daily): Win.Malware.Juko-9753236-0
- Microsoft Defender: Trojan:Win32/SelfDel!pz
- Emsisoft (Emergency Kit): Trojan.Downloader.JUKO
- Kaspersky (KVRT): HEUR:Trojan.Win32.SelfDel.gen
MITRE ATT&CK
Why this verdict
The malicious score of 89/100 is the fusion of 3 weighted signals:
- ClamAV (daily) flagged Win.Malware.Juko-9753236-0 (rule
Win.Malware.Juko-9753236-0) - engine signal, weight 0.90, confidence 0.95 - communicate over HTTP (rule
communicate over HTTP) - capa signal, weight 0.30, confidence 0.60 - enumerate processes (rule
enumerate processes) - capa signal, weight 0.20, confidence 0.60
Dynamic analysis
No runtime behaviour was captured for this sample, so the analysis above is static only. That is a limit of this run rather than evidence the sample does nothing.
More Juko samples · Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report