Suspicious
Suspect

b4f589f170c297cfcc9b6634ee1fda29

Share on LinkedIn
Print
PE Executable
MD5: b4f589f170c297cfcc9b6634ee1fda29
Size: 3.01 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b4f589f170c297cfcc9b6634ee1fda29
Sha1 34bf069154c547728640835c2f9f424400bf8cca
Sha256 3a1d4399d6a48caa8b521dfb3b0d01684d1469cf50e2fb9e5391f8241a86c080
Sha384 7684261f6e9812332c4481be6732bddb774f41391bf6590d949634cf2130e3db37303b158241e64f13efdaf8efa43750
Sha512 09c9d5e9eef47c90aa1bc97320572b21bb3f2261ff4c10eb063e19acfbd59dd9604c5ae407760209d66d70f684159ba57a5b5c2590e8aaa1b0fb2f4bce84a159
SSDeep 49152:LI3Ju+QY6y2N6vabZY8CWyhbIaVLRiRtWzN2Mjh8zBMHhujbQNvk:Ls/Q8MWab2m+hRoWzN2w6
TLSH 39D52386BAF31570E476C7B68C43B47DB1B9BB8485608E5F7BCC5B500EA2A142C36379
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.$zz
.1+h
.i}r
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙