Suspicious
Suspect

bbc3bd12b1ed9df1ca9f99ed4dc304fb

Share on LinkedIn
Print
PE Executable
MD5: bbc3bd12b1ed9df1ca9f99ed4dc304fb
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 bbc3bd12b1ed9df1ca9f99ed4dc304fb
Sha1 e8b8b9a323db49d7a5f8824efe269b62508afdeb
Sha256 71fcbb434b354f3d49979deb66e458086f266f36c6a161e46cd924445bd22c65
Sha384 7fb7b93273f0197c9cbe403a6f675aaf9ecc7b56b8112c851629b9eb711d3a4b7e88bae3a83e2c2557f7a323239ebe59
Sha512 b41996a44c31d779dccdec0e977266949bfc81bd1f6066b98dd1126ebb069780d0a3a7c64715173243e423935c0eaa0f85cf88c6f13836972bf207adddbf09ea
SSDeep 98304:DXDqPoBhz1aRxcSUDk36SAEdhvxWa9P59Uc/Pp2H:DXDqPe1Cxcxk3ZAEUadvP4H
TLSH A5363320B12941B5E0D309F004FFEA2AE6BE7C54137956CF97844BBA4D62BC2AB74747
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙