Suspicious
Suspect

b0fdb40d42afdc880bec986cd6544f3e

Share on LinkedIn
Print
PE Executable
MD5: b0fdb40d42afdc880bec986cd6544f3e
Size: 16.38 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Very low
MD5 b0fdb40d42afdc880bec986cd6544f3e
Sha1 3b5c7c2a47dc4be1bf7126251441d24b72774075
Sha256 9741e24cffbf4549bf5f5d3aa20ee691c1bcb1b5fbe45274cee257b310c70257
Sha384 3c7fa252c65bb9c9321767a15ccff87ad2d2071f9e007b898588e141df811d272fc1c7ac89e400cb9fb61e9e2336733a
Sha512 1d7c202547b2c86acb249a97105bf84b731f5a28421b4d4fb116495336aa54b23ff5a9903318d0089845a920d206e6750d16ba19a64ba5fabc06469804ca0177
SSDeep 384:r3oJD3lG0vZ2qY1f431kyZYOxj6qG6vHKD8:EZXEzqBYv
TLSH 8C720B09BFE8441EF1FE87B91DB1852086B1FA0A5A72EF4D1DD528DD4C736818B107B5
PeID
x64 .NET EXE/DLL ( jmp rax - DBG/noDBG ) Visual Studio v.6.0-11.0
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Module Name
starter_c4f0b03c-12e6-499f-9a1d-439f7bddf6ef.dll
Full Name
starter_c4f0b03c-12e6-499f-9a1d-439f7bddf6ef.dll
Scope Name
starter_c4f0b03c-12e6-499f-9a1d-439f7bddf6ef.dll
Scope Type
ModuleDef
Kind
Dll
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
starter_c4f0b03c-12e6-499f-9a1d-439f7bddf6ef
Assembly Version
0.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
<null>
Total Strings
134
Main Method
Not found or no body
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙