Suspicious
Suspect

50a508558a9d2c3d11db3b001125792c

PE Executable
MD5: 50a508558a9d2c3d11db3b001125792c
Size: 312.54 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 50a508558a9d2c3d11db3b001125792c
Sha1 336dfa8e012a4c35dff3751cbbda83846bc2121a
Sha256 cb3e729fe3cd8e698cf3fe6e1117cf98fcf4bb0af611cfc719d87e599d600640
Sha384 cac3a517221f12394ed1cac9a9d6890008e5f9c39704d12d299e7968539b72745a2151eb078a8c2c8b3126522b217fa6
Sha512 6faa02fea4e1f9a53bd313b9935f1dc9ebfe5174625368ca85ab1df188dd662a5b05830c534696975b0b8da967aae5aab7c95e8411d326118a1d52d658723960
SSDeep 6144:amlfAgiw7Op5ryNkS7Z12wvtGVG3iVt8eZ1u2J/xFji9:p1iw7gryNkSV1hy1Z1u2JLu9
TLSH D9646C11B9C48432C673383147B4E2B28DBDB8302D655B8F57A81D7A9F741D0EA29B6F
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ 8Microsoft Visual C++ 8Microsoft Visual C++ v6.0 DLLVC8 -> Microsoft Corporation
[Authenticode]_83bd7a59.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

2 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x49800 size 11480 bytes
Info
PDB Path: C:\builds\cc\cwcontrol\Product\ClickOnceRunner\Release\ClickOnceRunner.pdb
[Authenticode]_83bd7a59.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙