Suspicious
Suspect

89fcc7374c4b54a8b90f4eebd522e37e

PE Executable
MD5: 89fcc7374c4b54a8b90f4eebd522e37e
Size: 312.54 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 89fcc7374c4b54a8b90f4eebd522e37e
Sha1 73e7bbe732ec271391d71de476e5553cc2f41e29
Sha256 eb0ffa7c3dfe97fcb2a4247f6f756f0d50c2e8926251985be008e7af32da9639
Sha384 972313081f7f429da951d92f163a873b5c9bb171d15f39934d48b1cb7c88266d9f18e135ec7b3b5cdbb0b83548c04b93
Sha512 eb57e4d646e5d46a9c14e28a837e89f3df9e1466c1f5bcb9e7474e4083864aec2735a8e9688996a9ae9cd24b5789e94d03817c039282c4fdc1aed92878600796
SSDeep 6144:ymlfAgiw7Op5ryNkS7Z12wvtGVG3iVt8eZ1u2J/xFji9o:R1iw7gryNkSV1hy1Z1u2JLu9o
TLSH 9A646D11B9C48432C673383147B4E2B28DBDB8302D655B8F57A81D7A9F741D0EA29B6F
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ 8Microsoft Visual C++ 8Microsoft Visual C++ v6.0 DLLVC8 -> Microsoft Corporation
[Authenticode]_af9cb8d5.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

2 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x49800 size 11488 bytes
Info
PDB Path: C:\builds\cc\cwcontrol\Product\ClickOnceRunner\Release\ClickOnceRunner.pdb
[Authenticode]_af9cb8d5.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙