Suspicious
Suspect

fa6ca595498963eee9ed37444e89c383

PE Executable
MD5: fa6ca595498963eee9ed37444e89c383
Size: 2.92 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 fa6ca595498963eee9ed37444e89c383
Sha1 0d5979b9994450fea5859cb73309b29bf9a1a618
Sha256 46bae65a3cde27eabcb853f22c6bbdbc60c7c9e0882cc7a4cb71bb75729e8daa
Sha384 78dcd6b3b7eb9225a6adb41d35776b4ab51a51a03b3e2967067dcdbb8479625428268f00c2ec113cad785687a8131708
Sha512 dcd2d114b22014cfdda8163fe4f9304094bd1a9783c72b4207bc735e4fe5dba653fc45926f77c6cdbb559d3b374c50cc661683bb3bb3ea983ab131acf33dcaa5
SSDeep 49152:iItqYqVPX94AllUZ3IIrq7i3MgWAYBqa3maTcTbkrkNQPoKSJ:29f0Z4IWm3fYBFDQTbskL
TLSH 7CD5239A35B11EB4D836C7B2CF52E42EB13EB7948BF54E4BB68C39100E13558193A7B1
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.0+g
.s
|
."F1
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.0+g
.s
|
."F1
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙