Suspicious
Suspect

fb492a33f2b3a0bf95faf20870c2c8a6

PE Executable
MD5: fb492a33f2b3a0bf95faf20870c2c8a6
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 fb492a33f2b3a0bf95faf20870c2c8a6
Sha1 800ab70f65c11e1d1fbd46fa00e545f2cd9be354
Sha256 3b9272e078df26e3d7c3be6ffe50bbff4d5bc13e43d9fe8a8ef547396ca912ba
Sha384 abb1b3c52d1ac54099d5099c47ab9e7f63c8a1837da5f19b700ab9ef11f2439d13873c25a9a075405558b31398760674
Sha512 51d8761527a0cde2bd3f50a44a655c54c22118c298c6b36fa93a43d965e449985fe0f7919d8ebe6e86184470a52d41ea5c0e600c90f11b9b82c494ff79992a4e
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UQt1BM:fKOe2/7c9sN3zfZR1m+RGnt16C
TLSH 2C62C686E9922FADCE4F90703A11F868BA7172A086656DF7D782CC355D639D00034FF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙