Suspicious
Suspect

HeadTrackerLib.dll

PE Executable
MD5: f9c919d1142673935421d2276b736131
Size: 6.06 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 f9c919d1142673935421d2276b736131
Sha1 0933f58a48475315e0b2903f84c9cd6eddbd6046
Sha256 801eea56aa6750293bea26ee05fffd5ff9bfee90929ece6fb137c8029f2c57e9
Sha384 bfa9b95a4e06c076d2ac0dccfab85ba1886b179e7a3f0cfc5e9a02f3dd5669c2f30a19cc54c7796ed270854c6508d99a
Sha512 c20dbc6c253e5777f1247b9bd2f3233766757c8b76d664479066581fd4e4646f1e955ef4b13592948073daf15d4553b66c96cf2c1cd545ea0a4b87d62fa9668e
SSDeep 49152:TlRA6SPu44akhUOY3oJo3XMPjzwsqyYl6w6F1QfouZnpTdJtWFSVZXP0T96xq8sh:/A6QXFf+jtr060RU
TLSH 31566C97F67540D5C4F6C0B896BBAA47F371381907305AFB42914A1E6F27BE00ABB712
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.gfids
.tls
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0002
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: C:\p4client\WShared\dev_main\HeadTracker\x64\Release_MD\HeadTrackerLib.pdb
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.gfids
.tls
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0002
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙