{
	"id": "fc94fd9b-0f99-4cdc-abce-e89df04b308e",
	"created_at": "2026-04-06T00:07:27.737762Z",
	"updated_at": "2026-04-10T03:21:37.41704Z",
	"deleted_at": null,
	"sha1_hash": "f149387774016036e77e49a1c38fcc2d5967b702",
	"title": "Nov 2012 Worm Vobfus Samples",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 40312,
	"plain_text": "Nov 2012 Worm Vobfus Samples\r\nArchived: 2026-04-05 22:56:56 UTC\r\nSHA256: 7f7e5751277a0169ec2eb4492b0489ca850808f64b52e708f716f46ac160e54b\r\nSHA1: 82ad537a7acb18702a02b6dd2c6d12eaac0b3656\r\nMD5: 634aa845f5b0b519b6d8a8670b994906\r\nFile size: 188.0 KB ( 192512 bytes )\r\nFile name: 634aa845f5b0b519b6d8a8670b994906\r\nFile type: Win32 EXE\r\nTags: peexe\r\nDetection ratio: 35 / 46\r\nAnalysis date: 2012-12-07 00:53:51 UTC ( 3 hours, 36 minutes ago ) \r\nAdditional information\r\nAntivirus Result Update\r\nAgnitum - 20121206\r\nAhnLab-V3 Worm/Win32.Vobfus 20121206\r\nAntiVir Worm/Vobfus.9987551 20121207\r\nAntiy-AVL - 20121204\r\nAvast Win32:VB-AFCN [Trj] 20121207\r\nAVG Worm/VB.14.EF 20121207\r\nBitDefender Win32.Worm.TTL 20121206\r\nByteHero - 20121130\r\nCAT-QuickHeal Worm.Vobfus.A3 20121206\r\nClamAV - 20121207\r\nCommtouch - 20121206\r\nComodo TrojWare.Win32.Pronny.HV 20121206\r\nhttp://contagiodump.blogspot.com/2012/12/nov-2012-worm-vobfus-samples.html\r\nPage 1 of 5\n\nDrWeb Trojan.Siggen4.38386 20121207\r\nEmsisoft - 20121207\r\neSafe - 20121205\r\nESET-NOD32 a variant of Win32/VBObfus.GZ 20121206\r\nF-Prot - 20121206\r\nF-Secure Win32.Worm.TTL 20121207\r\nFortinet W32/Vobfus.AJJQ!worm 20121207\r\nGData Win32.Worm.TTL 20121207\r\nIkarus Worm.Win32.Vobfus 20121206\r\nJiangmin Worm/Vobfus.kmt 20121206\r\nK7AntiVirus Trojan 20121206\r\nKaspersky Worm.Win32.Vobfus.ajjq 20121206\r\nKingsoft Worm.Vobfus.(kcloud) 20121206\r\nMalwarebytes Worm.SFDC 20121207\r\nMcAfee VBObfus.ey 20121207\r\nMcAfee-GW-Edition VBObfus.ey 20121206\r\nMicrosoft Worm:Win32/Vobfus.LS 20121207\r\nMicroWorld-eScan Win32.Worm.TTL 20121206\r\nNANO-Antivirus Trojan.Win32.Siggen4.bcftwa 20121206\r\nNorman W32/Troj_Generic.FVRYE 20121206\r\nnProtect Worm/W32.Vobfus.192512.C 20121206\r\nPanda W32/Vobfus.GEV.worm 20121206\r\nPCTools Malware.Changeup 20121207\r\nRising - 20121206\r\nSophos Mal/Autorun-AX 20121206\r\nSUPERAntiSpyware Trojan.Agent/Gen-Vobfus 20121207\r\nhttp://contagiodump.blogspot.com/2012/12/nov-2012-worm-vobfus-samples.html\r\nPage 2 of 5\n\nSymantec W32.Changeup 20121207\r\nTheHacker - 20121207\r\nTotalDefense Win32/VBDoc.A!generic 20121206\r\nTrendMicro WORM_VOBFUS.SMIS 20121207\r\nTrendMicro-HouseCall WORM_VOBFUS.SMIS 20121207\r\nVBA32 Worm.Vobfus.ajhs 20121205\r\nVIPRE Trojan.Win32.Generic.pak!cobra 20121206\r\nSHA256: fe32599d6f2d1a874b65928cfd01a87f9d0a83d2b1e30b8f1148c8ad8aefd985\r\nFile name: 323CANON.exe\r\nDetection ratio: 40 / 46\r\nAnalysis date: 2012-12-07 03:11:12 UTC ( 1 hour, 20 minutes ago ) \r\n00\r\nMore details\r\nAnalysis\r\nComments\r\nVotes\r\nAdditional information\r\nAntivirus Result Update\r\nAgnitum Trojan.VBGent.Gen.1430 20121206\r\nAhnLab-V3 Trojan/Win32.Jorik 20121206\r\nAntiVir TR/Barys.26445896 20121207\r\nAntiy-AVL - 20121204\r\nAvast Win32:VB-ACUI [Trj] 20121207\r\nAVG Win32/Cryptor 20121207\r\nBitDefender Gen:Variant.Barys.2490 20121206\r\nByteHero - 20121130\r\nhttp://contagiodump.blogspot.com/2012/12/nov-2012-worm-vobfus-samples.html\r\nPage 3 of 5\n\nCAT-QuickHeal Worm.Vobfus.Gen 20121206\r\nClamAV - 20121207\r\nCommtouch W32/Vobfus.O.gen!Eldorado 20121206\r\nComodo Worm.Win32.Pronny.AK 20121206\r\nDrWeb Win32.HLLW.Autoruner1.15857 20121207\r\nEmsisoft Gen:Variant.Barys.2490 (B) 20121207\r\neSafe - 20121205\r\nESET-NOD32 Win32/Pronny.AQ 20121206\r\nF-Prot W32/Vobfus.O.gen!Eldorado 20121206\r\nF-Secure Gen:Variant.Barys.2490 20121207\r\nFortinet W32/Jorik.EGLG!tr 20121207\r\nGData Gen:Variant.Barys.2490 20121207\r\nIkarus Trojan.Win32.Jorik 20121207\r\nJiangmin Trojan/VBObf.a 20121206\r\nK7AntiVirus Trojan 20121206\r\nKaspersky Trojan.Win32.Jorik.Vobfus.cvtk 20121206\r\nKingsoft Win32.Troj.Generic.(kcloud) 20121206\r\nMalwarebytes Trojan.Downloader.ic 20121207\r\nMcAfee VBObfus.dv 20121207\r\nMcAfee-GW-Edition VBObfus.dv 20121207\r\nMicrosoft Worm:Win32/Vobfus.FB 20121207\r\nMicroWorld-eScan Gen:Variant.Barys.2490 20121206\r\nNANO-Antivirus - 20121207\r\nNorman W32/VB.TN 20121206\r\nnProtect Trojan/W32.Agent.307200.TU 20121207\r\nPanda W32/Vobfus.GEV.worm 20121206\r\nhttp://contagiodump.blogspot.com/2012/12/nov-2012-worm-vobfus-samples.html\r\nPage 4 of 5\n\nPCTools Malware.Changeup 20121207\r\nRising Trojan.Win32.VbUndef.a 20121207\r\nSophos W32/Vobfus-AH 20121207\r\nSUPERAntiSpyware Trojan.Agent/Gen-Vobfus 20121207\r\nSymantec W32.Changeup 20121207\r\nTheHacker Trojan/Jorik.Vobfus.cvtk 20121207\r\nTotalDefense Win32/Vobfus.ADR 20121206\r\nTrendMicro WORM_VOBFUS.SM01 20121207\r\nTrendMicro-HouseCall WORM_VOBFUS.SM01 20121207\r\nVBA32 Trojan.Jorik.Vobfus.cvtk 20121205\r\nVIPRE Trojan.Win32.Vobfus.a (v) 20121206\r\nSource: http://contagiodump.blogspot.com/2012/12/nov-2012-worm-vobfus-samples.html\r\nhttp://contagiodump.blogspot.com/2012/12/nov-2012-worm-vobfus-samples.html\r\nPage 5 of 5",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"Malpedia"
	],
	"references": [
		"http://contagiodump.blogspot.com/2012/12/nov-2012-worm-vobfus-samples.html"
	],
	"report_names": [
		"nov-2012-worm-vobfus-samples.html"
	],
	"threat_actors": [],
	"ts_created_at": 1775434047,
	"ts_updated_at": 1775791297,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/f149387774016036e77e49a1c38fcc2d5967b702.pdf",
		"text": "https://archive.orkl.eu/f149387774016036e77e49a1c38fcc2d5967b702.txt",
		"img": "https://archive.orkl.eu/f149387774016036e77e49a1c38fcc2d5967b702.jpg"
	}
}