Suspicious
Suspect

5b176eb8d91c4310f4ee312db0117820

PE Executable
MD5: 5b176eb8d91c4310f4ee312db0117820
Size: 61.44 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 5b176eb8d91c4310f4ee312db0117820
Sha1 0ed551a027cf0aa397c4ede38898bd1c9ca5d9d9
Sha256 39bce8e53fdc077589c7eb5dfe9f843e862ebee5b1a9aa7f4f98f73f48ed66cb
Sha384 cf655a9a6278411457bec98018aa099fcf1cb347cc3281da5b6205a9f8d0e12e28cbd27f169f9361b5f705753b966afc
Sha512 d9f3d897ec74385838840a669396498f15db265a34e5e38f36d412922157350989b7403f55e3e8d5fd9ccb41671f89aabb6c5d49e38be83c433083e6b402bf1c
SSDeep 768:wNNt7UqFVxsizvKTyKpZfAfOko5Z2yHkQqejIh0V1JZPYLmLT4Cg9:wNPFV28vKuKpBAfObZuejIhshYSP1Q
TLSH B5534C82F5E2C076C66250B1B9A91F639BFEFC152471C9F6C34928466E315D6E22F313
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ 7.0 - 8.0Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙