Suspicious
Suspect

af49d090af04cd0acba34c3308c45d23

Share on LinkedIn
Print
PE Executable
MD5: af49d090af04cd0acba34c3308c45d23
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 af49d090af04cd0acba34c3308c45d23
Sha1 44bb52939808600f5b230801404afa5e8a90ef64
Sha256 295ea6d0c0e8948edec19dea2b6778d9b21cd52c2f1c29efe30462801f4efbac
Sha384 8d37dc79059d1435cfa6dda7e41f466c934a32e9b470a4c5caec06911a2ce149b7b863d4005c8d87785b002f27121e1a
Sha512 e65d0db9232bf42dee56e7cc6ad7db3b961f2f6001844404152c955feb98221560dc8873f2c8b47ee9e3d9ad701bd8d51b1aa6fa45e6675bc0e9503a7d782658
SSDeep 49152:jnsnpEjbcBVQej/1INRx+TSqTdX1HkQo6SA:DMpUoBhz1aRxcSUDk36SA
TLSH 9F36235531E8C0B4C003553488FB8A62F6B67C2A17BAA94FBF904E7E2F23795E714742
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ 7.0 - 8.0Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit )
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙