Suspicious
Suspect

00fc4f3a9cfa5234542149e7719e6ba9

Share on LinkedIn
Print
PE Executable
MD5: 00fc4f3a9cfa5234542149e7719e6ba9
Size: 3.02 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 00fc4f3a9cfa5234542149e7719e6ba9
Sha1 2df55ed5cf673c78d5cdf5e95c81953b33559584
Sha256 a798e2a181a6f5f1f894ee1170dee706f6dcd21a92e1ff14d21f70841cb79c8f
Sha384 9e2349a9f8a92af5745c1cf7f33cc70526b430883882de80dee89f5869dcf4705eabd1b32b3b2aa4c42baf5cb1c2dd96
Sha512 000e67a198e7c81204283d7f10019e42527a30ea399a7d016c17a6aa49d0fda08096da2296f078060bb334fefbfcf51990cebcae60ca1b99125d828b8c77c097
SSDeep 49152:ssrC5BaJvR664L8oXuQ6Js7LabYnHW8rGjUkQXebei5JDdoyXKttfrrLk+0kExC6:1rC5B4Z6p4JQ7GGHDXgfrXuL7N
TLSH 71E5228AFCF32471E437C7B28E93A09CB12DB7945F254D5676C96B004E52EA86CB5338
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.Sw.
.i^>
.(]4
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙