Suspicious
Suspect

faa1ec6c4f2ee779a599ab56481a1a47

PE Executable
MD5: faa1ec6c4f2ee779a599ab56481a1a47
Size: 225.79 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 faa1ec6c4f2ee779a599ab56481a1a47
Sha1 c0633997b9f28fbfee5a5d7aa0ebbbe6620d9b0d
Sha256 e440f3fbbd33d569432ddbc45ee7de8a19b1648de898c01329d5f3a404bde96d
Sha384 b5ead9c0f5f526dcf4dfd0de5e7b82452324854aab5130baf995072fa6ff4797c36a0bbac8fac63ea73d4af39279e748
Sha512 7ff048d57f9cb486a60b805a9222bcac9ddef52c44a0b665769b9d24fa18502f78ded918c0c905f51778954c102ff700e88555f2e4df09003b4971818f91429c
SSDeep 6144:FejlHWFiEBx+QncAE0EfFnyVUjYcapLFo1kCGiics:Qj5WUEBx+Q7PEfFnQU+tC
TLSH 5724096BD25370FCD652C07852666232B733BA3C47359EF702A3C3359D21AC46E7A929
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙