Suspicious
Suspect

0008d8b7ceb7b1cd9fa3cd596fe8ab3b

PE Executable
MD5: 0008d8b7ceb7b1cd9fa3cd596fe8ab3b
Size: 6.12 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 0008d8b7ceb7b1cd9fa3cd596fe8ab3b
Sha1 c4976287d062159050b2dbad9e2268c538386690
Sha256 f480f04bac2f0438424e1f3386812680488ddfa009fb98b0ec8cb647e292f09d
Sha384 89945e2aadea43dfb92c23970827826496e6d34841ebb472d69a2fd6aeb946e30445181c0a900b10beeb7910f6f1206a
Sha512 64c22657eee397b28873f5646a926aa7d4f8fe07856e9c9e8aecdecb0adbd29ae479c712f98ea9b6e4b7341d4adbe448369e198c18bfb2b9fd151cdb288cc623
SSDeep 49152:m0iEPoOCAqwy12sMy5j9XQ2thQy/Z0ymc4ggu6a0WaBUFqxPvMNsg6/bHLDM/DHx:y7/7xxtx0JFxUscR5vmEqkbeeoIgOQ6
TLSH 23564B55BA6B94ACD197C47483468A639E2130DF0B36BAFF418485383F6ABF11B3D724
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12Private EXE Protector V2.30-V2.3X -> SetiSoft Team
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: IT_solutions.pdb
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙