Suspicious
Suspect

b49dc04d598f9fc62237987bacaa3132

PE Executable
MD5: b49dc04d598f9fc62237987bacaa3132
Size: 4.61 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b49dc04d598f9fc62237987bacaa3132
Sha1 2203f428d735dec8903520e518f97060c54731a0
Sha256 f7015ee8de9f30f151d6f6c64fc7eee072af3b9f033f88f1bfe2aaf76dcc0f3a
Sha384 85a38de880d5fbec8cd1330caf9926c2d740519f16932720b7a04c7180851c6d66cecf72fca103849eb935475b2d9714
Sha512 44bb09634ed4240e55bdf188ee97d7277071f17247cf44dd5328436fc002fb234c35375e4ad2c2b8860a8d3b795549178d301eb1150732894ce54b0ab1d1c6e5
SSDeep 48:6I7lwe77UR08SvJdSR1Ig9TPe1YpV1ZsSZIXxhxhwcRaK:Pl1O09xq1Ig9T2Enwp
TLSH 0591A6C6F75BE6B2EC1C07F500A37994C8682E14927C9B464FA16F1C3C111AA3C3DA52
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$mn
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙