Suspicious
Suspect

c4a79e9f3206263e26586625690b2e76

Share on LinkedIn
Print
PE Executable
MD5: c4a79e9f3206263e26586625690b2e76
Size: 1.62 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 c4a79e9f3206263e26586625690b2e76
Sha1 30665bebc267436ddcb5c004f8ac72b215781e37
Sha256 bad897167d47ed5aeed887ee61892578fde95a2b3e71f795c71bc3ab51b0f45d
Sha384 8d4a5a9e5484a102774f47ed75d0ba2442b71b77f8130c9644915f721866b115052cec0382e325a93f4f3d67191abb36
Sha512 a1f3862f956e0ecd0bd6c772eae3f974a3b924aee49c822cc23195fedf4d101516449fa47b8d089a76c89d9311c1e20d943afcc7e304c10710d830d21fc7b02a
SSDeep 24576:7tgEMGbnLTQ9dsl7+GKiRnkNO/urqW+1n69d+3Vklh+wSy3nW4Qbar7GU:7tq9dsl7jTRnkOWc1nc03elhzHTr7H
TLSH 42758C5632F83658F7F64F7595F01133CA37FCA6E9F18B994A0C309C1A326618966F22
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.tls
.gfids
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
RT_RCDATA
ID:0066
ID:1033
RT_GROUP_CURSOR4
ID:0065
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: C:\enterp-branch\dev-1824\DevOps\CTI\PRJ\Deploy\Release\CTDPL.PDB
An error has occurred. This application may no longer respond until reloaded. Reload 🗙