MB-c2b078ab7d96bcdb061c34eb88e0d581ff2b8914ac26ab236e63775ebe7949d1
high
📛 Threat Title
Unknown: 8e8fd0cc41163bccb6013ac5967bd4613cb2ee6e0829f1a9340eca1d299c91d7
Description
File type: exe. Size: 11639808 bytes. Tags: btmob, exe, xred, xred-mooo-com. Reporter: johnk3r. First seen: 2026-08-04 18:23:57.
Indicators of Compromise (4)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
hash_imphash
f34d5f2d4577ed6d9ceec516c1f5a744
IOC database
- Type
- hash_imphash
- Value
f34d5f2d4577ed6d9ceec516c1f5a744- First seen
- Last seen
- Attached to this threat
- Appears in
- 638 threats
- Description
- imphash of URLhaus payload 61d424c2e3c5d8db…
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha256
c2b078ab7d96bcdb061c34eb88e0d581ff2b8914ac26ab236e63775ebe7949d1
IOC database
- Type
- hash_sha256
- Value
c2b078ab7d96bcdb061c34eb88e0d581ff2b8914ac26ab236e63775ebe7949d1- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Unknown
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_sha1
1fff999fddab7c075963e09a0f1155ed76981794
IOC database
- Type
- hash_sha1
- Value
1fff999fddab7c075963e09a0f1155ed76981794- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
hash_md5
7bd987f93ce191a3bc8f7590ffe510ff
IOC database
- Type
- hash_md5
- Value
7bd987f93ce191a3bc8f7590ffe510ff- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
References (1)
-
MalwareBazaar sample page
Abuse.ch
File type: exe. Size: 11639808 bytes. Tags: btmob, exe, xred, xred-mooo-com. Reporter: johnk3r. First seen: 2026-08-04 18:23:57.
Remediations (10)
-
web:aruljohn.com
Enter the MAC address or OUI and find which company made the device. Which company manufactured the network card? MA-L, MA-M, MA-S. MAC Vendor details.
-
web:learn.microsoft.com
When Microsoft released the remediation steps for this vulnerability, the data type of registry value "EnableCertPaddingCheck" = 1 as REG_SZ and we set this value as "REG_SZ" across all computers.
-
web:learn.microsoft.com
Learn how to identify and remediate certificate-related security risks in Active Directory Certificate Services (AD CS) using Microsoft Defender for Identity security posture assessments.
-
web:maclookup.app
Fast and easy MAC address lookup on IEEE directory and Wireshark manufacturer database. Search vendor, manufacturer or organization of a device by MAC/OUI address. Fast REST API
-
web:maclookup.app
Use our MAC Address Search to find manufacturer details and vendor information in real-time. Enhance your network security with maclookup.app.
-
web:miniwebtool.com
MAC Address Lookup - Instantly identify network device manufacturers and vendors by MAC address. Search by full or partial MAC address, or look up MAC prefixes by company name with our comprehensive OUI database.
-
web:www.elevenforum.com
Account Unknown (S-1-15-3-65536-1888954469-739942743-1668119174-2468466756-4239452838-1296943325-355587736-700089176) It has special permissions for the C drive, but I don't know how to find out what it can/can't do or if it's safe to remove... gonna try to read the rest of that thread in case I can understand anything more from that.
-
web:www.google.com
Search the world's information, including webpages, images, videos and more. Google has many special features to help you find exactly what you're looking for.
-
web:www.toolsley.com
Free browser tool to identify unknown files based on their contents. Recognizes over 2000 file formats using libmagic. No installation necessary. Just drag & drop!
-
web:www.windowsdigitals.com
If you come across "Account Unknown " with a SID like S-1-15-3 or S-1-5-21 in the folder or drive properties, here's what you need to know.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.