Suspicious
Suspect

057739a12fa0d25a1017e5f7a8538140

PE Executable
MD5: 057739a12fa0d25a1017e5f7a8538140
Size: 1.64 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 057739a12fa0d25a1017e5f7a8538140
Sha1 3dd7b3bbb0dcfe89e1a3ff1c1b0abcd5371b706e
Sha256 c13be88a14d2c50b4e5ebca6b490fd6b8a6982555051c58b1d45fef6011671ee
Sha384 f7895639fe039f6dd651ddc27c8603ee1ead6280af545002d1813142c111f70ef72644cf3c1fdfeca377821aabab89fb
Sha512 7be7261578ced580972c529f98ca8d9837e0af78e989df9b1faa8b8fe20b7022d05ea467012855c825fd5a798066ab62759d37fbb6f8c08fdb8f567caf9a7aca
SSDeep 24576:GwuiEs69CpHDtGeqIKCaKSStmYowH1E0Dt2/oVVQI:Rv69CpjtGIKCaKSStmYFVE0B2/
TLSH 1975D922B2D0AB7CDC2558F30F979B74C372760E715359E818BE1F04A92B5A26B127DC
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit )
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$di
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙