Suspicious
Suspect

b12d2a9655fc15b5ae9e6320a0dffa06

PE Executable
MD5: b12d2a9655fc15b5ae9e6320a0dffa06
Size: 2.92 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b12d2a9655fc15b5ae9e6320a0dffa06
Sha1 eaacb781e556ce2e7e646ed6988b8006e9be119a
Sha256 4b00e47da69a554bb231c79aa49c0fd3dc44923b2c3780db95be456ec4eaf815
Sha384 36bf02fb07099f4dcfc349a748252cdce8b681cecd8ec2b70bd59673a5a766da557ac92a642ad6de00efb665b5267b9b
Sha512 beef7e0fa9e50329c13997153326d4ca2ac1266f5f002745dd9589100f31d9c19aded0574358b3766d402c2288cc5095b316391fc989f945a3bb7f15ce09370f
SSDeep 49152:IJRW4OJNt0BvFWCQWtPmUH8susV2loSX52/iVqLeGwlz/s1DUUkmwh82wjGIngL0:KOJaNWxAXaowAI8jwlTsUU082wHgkX8f
TLSH DBD52396B5F219B0C83BC7B18F01E4AE70687B898E258D4BB7CD55008E63658EC73772
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.'DO
.[aR
.LXr
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.'DO
.[aR
.LXr
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙