Suspicious
Suspect

021446d8adb06ece9811c1ed790fe604

PE Executable
MD5: 021446d8adb06ece9811c1ed790fe604
Size: 2.99 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 021446d8adb06ece9811c1ed790fe604
Sha1 1239adeb9d79789b111483c30ad40f0753cb479e
Sha256 9b5bb9fcbfd0be1c678f05b7392f26742f08422d1f34afd0e4e3d74a74111cc3
Sha384 ce88685902ea5dd1988e79f8febc8ded9bbd7da004d769f626c2e705b436d67e917f37930cc3fe004e66ad188b465dd6
Sha512 944833c1d9d21996a740eb0a615bd7170d432b4ecc09ea34cbee908430e19de37136e325d9103a835aee811e0842dee4474d88b951a00ae39c49eab451e45dd1
SSDeep 49152:V8RrIYr+LN+TE1R7dMWgikIziK6p3Ph0vtNNnEM/GfzGILzEMQ590OKMz1eV0K:V8Rrxr+Lh1R7dMWgikq96pfaNNnEMIGV
TLSH B3D5239ABCF22974D836C7759E83E59DB23E3B804B718E033AD86D404D626587C36378
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.{Qi
.?
.bsM
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.{Qi
.?
.bsM
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙