Suspicious
Suspect

ba6158ffb7ef5e0bc522fc0118c9d2cf

PE Executable
MD5: ba6158ffb7ef5e0bc522fc0118c9d2cf
Size: 314.19 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ba6158ffb7ef5e0bc522fc0118c9d2cf
Sha1 6f61da7e3471b321f54537808a1578f389d90c24
Sha256 88fce5bc260870ef6296c4c5967449d0dc38e83b3fcfea5a971446e8dfd1f5ff
Sha384 a92b9b178ee018004e4be18e2096a2cb2fbf53d4b9a5b7b36b58719f80e2f93fccf1985f12efc769665ff1f97e4c5ff2
Sha512 4239150326982de07e8f0b7c627166913273f02ed4fd878af24ee3b97c8647415cb8af49024cfad0fb53f45d3903287de242a1b2f599ceed0fbb8ad7fe8b844d
SSDeep 3072:Bk4h5vc1MfgmlJdPT3bIauJYAooDl0WhTkNxOyNKw2JaLlMn:Nh5k1VmVCuoDSWhA2ha+n
TLSH EE644B5783D46A66E5F307F7607E4261E773C1FE0236818BB41CD68D7288590E3ABAE4
PeID
MASM/TASM - sig4 (h)
[Authenticode]_05432f4c.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.buildid
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
RT_RCDATA
ID:00C8
ID:1033
RT_GROUP_CURSOR4
ID:0064
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

2 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x4A600 size 9552 bytes
[Authenticode]_05432f4c.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.buildid
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
RT_RCDATA
ID:00C8
ID:1033
RT_GROUP_CURSOR4
ID:0064
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙