Suspicious
Suspect

aaa81ac7dd1c4f955a2f064452fd4b17

PE Executable
MD5: aaa81ac7dd1c4f955a2f064452fd4b17
Size: 637.95 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 aaa81ac7dd1c4f955a2f064452fd4b17
Sha1 f9cbbe6db24a874d31110f6b21de99ba766e7abe
Sha256 cdbebe827bfa83dc5c5cc6941827a9b0a954b6637dd80bccef86fad5b5ec4599
Sha384 97199db1c578d7421d1ed24f308fd54f067271b0cfdc9e1e95b409f3bdbb7e73e8ce6e904ef79e1fc655a17768231203
Sha512 8af5a5111d29afa9ed4e90b1ae6e787c07d62bb382317a714d4f05ce888b78eb723c5568b83b8b9e31f3d635b2db825c124ffa70d2d61dd969c94d1c5080b49e
SSDeep 12288:g8YzFHAUzHHX8e79YZtFXs+FE3EZnd9rPYN4c6SXGJd1sHgvSPX:g/zH38eSZs+a3sTrBJbsAvSPX
TLSH 7DD4E1B2B9B010E2F3568273C9E3171956E2F4370B1315FB17E91A513F1A6DD9EAA308
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.tls
_RDATA
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
RT_VERSION
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: jatik.pdb
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.tls
_RDATA
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
RT_VERSION
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙