Suspicious
Suspect

0bb4a037a18bbdb32248cdfc549a0614

PE Executable
MD5: 0bb4a037a18bbdb32248cdfc549a0614
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 0bb4a037a18bbdb32248cdfc549a0614
Sha1 63cdf5c1b51c072428de9f5ed28443a76ecf1fbf
Sha256 c12aedb043906b5bbd7ec1cf86790ae0fd7e4bf1da9147dfd19de514b6cdbbcb
Sha384 a9de03b8a89f454cd1d730ad933b82fff8ac12968c211cb9ef7dabf126a619124f8d0edf1c06f07c2811118e97a89323
Sha512 25a4c300afee0077b892288c85385eb8a62efde9a698feb057b198d0a120107c8d75c657c17f1c6b36037f5f2d6af408cd09fdeddd814b98f2e41af1e159aace
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UbV3BM:fKOe2/7c9sN3zfZR1m+RG216C
TLSH 7F62D786D8A21E5CEE4EC0707A12F97CBDB23690896558E3D7928E345EA39C10434FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙