Suspicious
Suspect

b52ef22dee2b67f25c35d15d3bf45f5e

PE Executable
MD5: b52ef22dee2b67f25c35d15d3bf45f5e
Size: 3.98 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b52ef22dee2b67f25c35d15d3bf45f5e
Sha1 960ecbe887707dce954ff29a5ab3d6bc0b8ab664
Sha256 398da2e951f8287d6aa7e53c1c9c0748a5c39af3353b8af94020036fcb9d5bef
Sha384 c19ee7c16fa5af0a5ad5fdb773f1fca8e60909ff1173b9af147d0237072182ca77f6ea1130747844c89dd2e13621ae4b
Sha512 b4c79781cd04e84de7cafca56a84f7b92a1eecce65a0f72b83d1ec1f1ddd07210a70aeeac9702adb25c9968ca35e4e47f414e12b0199714c0f82be3b8fefc6b8
SSDeep 49152:K1RlFpvn2iqTnt+SLHdFJsHIo1A82mz9hBBvONU8lx070H+u1SgOMzYAD1H3:GqTnfHdFJWxnhBBvONU8lua+q
TLSH 40068C0A7D44B2A4C69A9A32A53502A0F630BC6DC73477E72E94E6701F363C31E7AF55
PeID
Microsoft Visual C++ v6.0 DLLtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_60723b22.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x3CA000 size 8112 bytes
[Authenticode]_60723b22.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙