Malicious
Malicious

7189b80a8c7f1564c75d7a98fcca11ad

Share on LinkedIn
Print
PE Executable
MD5: 7189b80a8c7f1564c75d7a98fcca11ad
Size: 175.62 KB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score High
MD5 7189b80a8c7f1564c75d7a98fcca11ad
Sha1 33f0e9835b7448be457880c70386f71f15d59f81
Sha256 e7554325d5451267275be68481761985831d3c1a3992619ae1541c77fd4e7263
Sha384 7ee6282df82bb1da2848946acd1cb7267f48421abd1036186ca0e62e27e289bca8256bd1b276615ab5cb06bfcb13132f
Sha512 dd4dabe33e9605cb2c485c00f1836755ee669db8800c172afedbc46f649feff172e1faa0614b6da9946680616b874f400846e3bd4737a42e1ea596d0d543bfe4
SSDeep 3072:54U3ytgrPm3BbRueEUKx3WXQo1ecmDovu/246UVGuepCOep74Ru/zyvaHMW1:TKgreOeJKx3+9vu/2SIep7n/i6F1
TLSH 3704F7167627DA13C2AC113AC1C7361427B1EB467773E34A7ECE22AC2E523E69D055CE
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.sdata
.reloc
.Net Resources
CH.Resources.resources
CH.Chat.resources
ToolStripButton1.Image
[NBF]root.Data
[NBF]root.Data-preview.png
PictureBox2.Image
[NBF]root.Data
[NBF]root.Data-preview.png
ToolStripButton4.Image
[NBF]root.Data
[NBF]root.Data-preview.png
CH.g.resources
RZBbuayd4YoTcvcrU0.4Znb9Ie9RORjWm55O3
aR3nbf8dQp2feLmk31.SplashForm.resources
$this.Icon
[NBF]root.IconData
aR3nbf8dQp2feLmk31.lSfgApatkdxsVcGcrktoFd.resources
progressBar1.Modifiers
$this.Language
$this.GridSize
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll>bin
Shape pe:dll>bin
malicious 2 nodes
Path pe:dll>img
Shape pe:dll>img
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Module Name
CH.dll
Full Name
CH.dll
Scope Name
CH.dll
Scope Type
ModuleDef
Kind
Dll
Runtime Version
v2.0.50727
Tables Header Version
512
WinMD Version
<null>
Assembly Name
CH
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
<null>
Total Strings
25
Main Method
Not found or no body
Module Name
CH.dll
Full Name
CH.dll
Scope Name
CH.dll
Scope Type
ModuleDef
Kind
Dll
Runtime Version
v2.0.50727
Tables Header Version
512
WinMD Version
<null>
Assembly Name
CH
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
<null>
Total Strings
25
Main Method
Not found or no body
An error has occurred. This application may no longer respond until reloaded. Reload 🗙