Malicious
Malicious

41bad6cfd16b196a7359a0a18e20bb2c

PE Executable
MD5: 41bad6cfd16b196a7359a0a18e20bb2c
Size: 12.13 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 41bad6cfd16b196a7359a0a18e20bb2c
Sha1 cad93a89919df37befb609fdb0d99ea2a0eecdcd
Sha256 b84f28bf2872715a977aafd9215358d078ae942c6e8ab1c5b397c189c9f5f970
Sha384 a9bb9d42b53e0df3d3a6bea7d5d6f7749174d81c7cc2cdfdc44241452e73e6a117259c6e85c9f8c8239f81f118a2b7f9
Sha512 6f461e3a156cca355ef1ba22498f440b7c1b243886737ef1471a46ce424f8f948d8e0c37bf812c07a5b334a41f3495dc617d442c1e43cd2044d7682234f7b5cc
SSDeep 98304:deXjoMk15VpUgM75QSPecpiFn7n07M7SRhS++ccTRT5:dmoMip1MQSPecYR07fls15
TLSH 55C67C17A92502E9C9A5DB74C4B742427B78B84C8B3133E76E10BA742F757D0BEBA314
[Authenticode]_33d8fa0f.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0xB8FA00 size 8064 bytes
[Authenticode]_33d8fa0f.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙