Suspicious
Suspect

a52f6b90d9719b42f115c4423a92270b

PE Executable
MD5: a52f6b90d9719b42f115c4423a92270b
Size: 83.18 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a52f6b90d9719b42f115c4423a92270b
Sha1 d6530bdf615c53d2061afa647a8c2a89241c8b68
Sha256 ef3319b4d353374ac156b9d9f736d08e16b1467e6a99dced82133ebfd22492df
Sha384 dea0eefc473738cda81b22a16f64c5958b0c76965aaf5c18fc10937fc1166a8f73a2f1ec63512058acea6a8f920cba9a
Sha512 ef4ae290ba069274c8f151fa54c33228b4585189bf582c3727bc6317b4220f64fdda18c082f6bcf878a502d71a3de9b767fa1d32d2bf622dc0c5b3aa8adc5128
SSDeep 1536:SxoG6KpY6Qi3yj2wyq4HwiMO10HVLCJRpsWr6cdaWPBJYYx7FJR:wenkyfPAwiMq0RqRfbaWZJYYxXR
TLSH 32836C43B5D18476E9720E3118B1D9B4593FBE110E648EAF7398822E0F351D19E3AE7B
PeID
Microsoft Visual C++ 8Microsoft Visual C++ 8Microsoft Visual C++ v6.0 DLLVC8 -> Microsoft Corporation
[Authenticode]_cd828bf4.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

2 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x11800 size 11496 bytes
Info
PDB Path: C:\builds\cc\cwcontrol\Product\ClickOnceRunner\Release\ClickOnceRunner.pdb
[Authenticode]_cd828bf4.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙