Suspicious
Suspect

2bb1b024135ef7b0af3141d389530d82

PE Executable
MD5: 2bb1b024135ef7b0af3141d389530d82
Size: 3.88 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2bb1b024135ef7b0af3141d389530d82
Sha1 96a837eee8332c0d27efcad1537000001e5aa86d
Sha256 833b709b93b80919dc06d8b0619de8919df283060dd9fdb9da6bd4d9b778ca7a
Sha384 2c6f2ffb3a13f8d3debcbbffc61927687df946d2adef81860f70cd0860f19ed4d8b51112f76ab10a6979597e15a30c9c
Sha512 fab1098c7bd59975d36b89a5ab3baf98eb8485b081a77933dbe98075e5d861de0594dffead070dcd542d3768b04746dbffc83ce2059f9c229937bcfa408b92e2
SSDeep 98304:RBJzPZwQwRYTkDTysBKwbCym8bILHGWCv5IjjPmg9:RvvpYTysBhegv5IjjPmg9
TLSH F7068D17E2A350ECC12BC17D4657A772A530B868C534FE7F5A90DB312E31E50AB6EB24
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPolyEnE 0.01+ -> Lennart HedlundPrivate EXE Protector V2.30-V2.3X -> SetiSoft Team
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙