Suspicious
Suspect

dabee65d0f22b4bf8f10342b72714e20

Share on LinkedIn
Print
JavaScript
MD5: dabee65d0f22b4bf8f10342b72714e20
Size: 10.74 MB
application/javascript

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 dabee65d0f22b4bf8f10342b72714e20
Sha1 2285312da4e0508f043bc590ff5b0c31478d55ee
Sha256 a10cfa5f8b511c281adebc60c0c34b62f37dd589c4cb136ca578d82c0067a9d2
Sha384 35d8fe6ead2767009eab47549cb29cb67f4fb0fcc1218c1b98d0843e7e388450ebef476bde5420b169131e0f7a7d3d77
Sha512 cdbff5f1cde220323f5b7d2f0513bbf046c9c8fb48a9b48c2e2449ab56e77c215e317d2b37aaf15768c2e04cdc3b1af921dc910e98293ca156a670f241a243fb
SSDeep 196608:wOE0W8/LaeA1HeT39IigQTauDXURuA3dSYEQVdlCE7:wOjW8o1+TtIiL2uARuA3dS9QVrCE7
TLSH 1EB63389B3A604FCE89E913F92E9825767A270B7436883CB67E00D514F272D5EF35B11
PeID
Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Overlay_bda35dc0.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0-preview.png
ID:0005
ID:0
ID:0006
ID:0
ID:0007
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
3 / 3
Path pe:exe~T1059.007>pe:rsrc>bin
Shape pe:exe>pe:rsrc>bin
technique3 nodes
Path pe:exe~T1059.007>pe:rsrc>img
Shape pe:exe>pe:rsrc>img
technique3 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Overlay extracted: Overlay_bda35dc0.bin (10400037 bytes)
Info
PDB Path: t$mn
An error has occurred. This application may no longer respond until reloaded. Reload 🗙