Suspicious
Suspect

406ae8d6dd86e5f0c4ebdc05ded16852

PE Executable
MD5: 406ae8d6dd86e5f0c4ebdc05ded16852
Size: 1.14 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 406ae8d6dd86e5f0c4ebdc05ded16852
Sha1 d5daceeccf819cbdecf2fb4fb03cb082010639cb
Sha256 5fb0d79180a94586728efefa7f2c5bfff3fbf8428febc0054829ed737db20f83
Sha384 b9c94c8fc2db337bdc62f59bb2f937c4d8f6cb78be29a9c2f4a44d5312ed85d70fb1eb642be335436164aacb6aed0c75
Sha512 4a887892a6b1ce341a5b3cec2ddb149864c9a011c0b1f4f24d51097ff5e6e9f0218f6734321ef12532963eedb182225eb5ddf1aefffba29798011922ac0cb6a3
SSDeep 12288:Sbs/m0E54jwaFXGc8lEBBBHGBKq2IZwD6vfqItNqdg:SbOVE5ifGPRZwmvf3fd
TLSH B0357C83E7A385D8C116C9B5534BF137F9627C8E4B157197ABC41E633A67BA4E22CB00
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙