Suspicious
Suspect

4bbd399d501e12070e49699cc5fabcfa

PE Executable
MD5: 4bbd399d501e12070e49699cc5fabcfa
Size: 262.66 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4bbd399d501e12070e49699cc5fabcfa
Sha1 0cee434260958cd3b2a7f71e41b7a4b3d7cdbd0b
Sha256 7daf04a3498c969f55cdf52265f30764ca08e53f469ad6de61bbd6f208b0fbf9
Sha384 b167e698f90ba9034e0423097c07112704273a1f3d12b3da27e1d3b2422e954053aa7292a13b98528cf8de08df3c5a76
Sha512 5e528b4222e58d3bd0486b30450cc79505f50d9b35d75e0fe7a5e5bbd42b9a7b26a0857f054a9e61b9a2dbb0f2ecdb9f27020205c26032db63ee4b4786f344cb
SSDeep 6144:rrMDZe1lXAIAi+V6JGFflSUKnQrzLGtaF:rg87wi+1Fffr
TLSH B7445B56B3A508FAED77823C88531A06E77278120B21CBAF0764477A5F277D09D3EB61
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$mn
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙