Suspicious
Suspect

4b3796405117a5e325376e1d8036a410

PE Executable
MD5: 4b3796405117a5e325376e1d8036a410
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4b3796405117a5e325376e1d8036a410
Sha1 41d4f9428e0e85170ef1b927604322eb2a915a81
Sha256 3aa9b36f26c9dfdb464f145b656ec5b1f6a55b6a7d6c4774dbd6e6cae0a110c5
Sha384 4d0dafbff045e3f235b1ac215450de6879af284b8671bd84c5c8d7bb4d308136b9eb6b8fec29c24a293aede102ff33ef
Sha512 cfe8baf455908581d558ee6f71ee908f92b417c09e8845dfb84c11c88e2399fd27e486c7f5f3f35ee108167511b2400042bce29419fda4673ceb8b45602c73a5
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UfuKCY:fKOe2/7c9sN3zfZR1m+RGF0o6C
TLSH 6562C7C6E8E22FACDE4F80B03A11F828B9747791866969F7D7828C355D679D00434EF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙