Suspicious
Suspect

db26441f25df881b0491e9ebd8f7a772

ZIP Archive
MD5: db26441f25df881b0491e9ebd8f7a772
Size: 16.48 MB
application/zip

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 db26441f25df881b0491e9ebd8f7a772
Sha1 e61257a9d5239c3b85525bd7d259e8452e830092
Sha256 6fd67dcdaeced3ab38c6686a5c357172f1a02e14df6506d81e985bed62995adb
Sha384 db9fc4976865878c4b333490251effedd2c4346d018a592700c5728e37c3484916f471276cf0804b8e756b6d01851df6
Sha512 08c0312c02ac1e72836c1b6273580d78f2ae9f8e73f4d7e265c2833da2931f100ad591085296495155743a6e9ef4e82a70939ae5e87fb27267ffc75c86ee96a2
SSDeep 393216:/tD0q5PEamWwtwckdZ2/rtxdOWBDFHgsqCZ2FO:55cjWnx2tyW3HgsqCZH
TLSH B0F6331AE2E8046B38EFBBA9DD2E5FE4507C519C9F1B19AC5F720C341021C659EB31DA
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Castle.DynamicProxy.DynProxy.snk
Castle.Layout.zqzcfog
Castle.Config.kgwrumsm
Castle.Resources.pccsgtc
Castle.Config.inlcfipzl
Castle.Resources.edisgt
Castle.Runtime.mbskaa
Castle.Data.kpfkqijy
Installer.csproj
[Authenticode]_c72d33ec.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
RT_GROUP_CURSOR4
ID:0000
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
.Net Resources
MSBuild.Strings.resources
MSBuild.Strings.shared.resources
resources
README.txt
LICENSE.txt
samples.pak
database.db
STICH beta

No STICH Path has been generated for this analysis yet.

5 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 5
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Castle.DynamicProxy.DynProxy.snk
Castle.Layout.zqzcfog
Castle.Config.kgwrumsm
Castle.Resources.pccsgtc
Castle.Config.inlcfipzl
Castle.Resources.edisgt
Castle.Runtime.mbskaa
Castle.Data.kpfkqijy
Installer.csproj
[Authenticode]_c72d33ec.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
RT_GROUP_CURSOR4
ID:0000
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
.Net Resources
MSBuild.Strings.resources
MSBuild.Strings.shared.resources
resources
README.txt
LICENSE.txt
samples.pak
database.db
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙