Suspicious
Suspect

6fbac6e2cdca5f36b9a2bd3bb418cd2a

PE Executable
MD5: 6fbac6e2cdca5f36b9a2bd3bb418cd2a
Size: 2.91 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 6fbac6e2cdca5f36b9a2bd3bb418cd2a
Sha1 eea16abf13a894c1b9999d85ca4c820c1d94983b
Sha256 60e66eaa948273a5fbb3701ce3636d007ab0e91fc98be4801ccedb99b204b313
Sha384 4fd0f556af02712831cd15e3f48161d904ccc581f49134114eedaba4fd11d83d2da6dcd300f7b47807a5e43a8c4ec5b9
Sha512 b66e695d3a7172d4ca040604380a2597d1805f7be9a090cf97307784b394a0f03ba4fff85dd290f31e0d946d88ef149684ed346ef32f3ce25d7e590e51568598
SSDeep 49152:gcF+dRID1+TSuFFd6Y6hmLKxVWdWuKCz+46AVJQGb7nQfBSPP3j:5FweLuFFd6SrKCgAPQ8Qf4
TLSH 82D523CA78F66EB0C473C3B5CF82E4ADB16ABB855A704E07BACE6900CD52514953B371
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.[po
.=Oi
.mbT
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.[po
.=Oi
.mbT
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙