Suspicious
Suspect

fbe1a04cc1775de718372d31d6b89aba

PE Executable
MD5: fbe1a04cc1775de718372d31d6b89aba
Size: 1.74 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 fbe1a04cc1775de718372d31d6b89aba
Sha1 d7ce3534465c07fcacb8ec525c0473bca404ed89
Sha256 b2134f3c37e669227029cfcebdd496fbc65c9b0504a2d2123bfaa45474c08885
Sha384 c785e63e602ce007d35f929d8f7a4595554207b7a7378f36cb46d0f282d53096728a4b9e8eb10cc953fa4b8f17545b15
Sha512 7c2e12e0dce08b2ec4177d56679a6ec2dba338d312d5821081b1d4dbb0276108025f82fa36c28af51f411797251e24eadae28b920be5c438293e62770fe07d8e
SSDeep 49152:PpuFDCcM9WjB5kShUyd3avfXdsNFNJfGw:xLw
TLSH 2E85F922B2D097BCDC2558F30F979B74C372760E71169AE818BE1F04AD2B5A16B127DC
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit )
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$di
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙