Suspicious
Suspect

b426a480de03b7a15e739cf07f7fac88

PE Executable
MD5: b426a480de03b7a15e739cf07f7fac88
Size: 338.94 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b426a480de03b7a15e739cf07f7fac88
Sha1 b30bbd5be515a837e21a3c9ac34afab886f67d59
Sha256 8d945e37a9d8f4f68fb34b623e628aed9cce8c8ea6593a8e2bbcbba33e166537
Sha384 0881f8c63481dd68940eeaa021f9701f4e3c29d4c54ad86048d3eee6296cc7fd2b18e7cc56384cca1b9c9afee9114c6e
Sha512 4f8772e0913f39afd193d9e21cbc3bf88e374410b8afd17771ac946c082c3e1365544dbb0b1dc40bca1af2514ac2ecb39da7a0fa7000496b0b8e7b7a66360ff2
SSDeep 6144:pwguC3xuU0tOOwpxRK3XHPNGdlk3oMea:MCwU0tgbwPNGs1n
TLSH 64748E19F7A418F9D667C17CC9524906E6727C174361ABCF23A04AA72F336E09E3EB01
PeID
Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: C:\Users\Administrator\source\repos\bunbun\x64\Release\bunbun.pdb
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙