Suspicious
Suspect

02478c1608c0c674b9ee032a74f088eb

Share on LinkedIn
Print
PE Executable
MD5: 02478c1608c0c674b9ee032a74f088eb
Size: 2.95 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 02478c1608c0c674b9ee032a74f088eb
Sha1 6f79d09c82f680de9e206fe7130e58a910fd8764
Sha256 dbb9e176f2b2ee95cba7861b58e04f807cbd4718d0e408bd95b1875ef328c672
Sha384 aaaa7121e85818ea5c6c20a1c88388d2a39be5647fc5029a6fa2ecce12d88a9b05db722f2c638f95844a6ce12fb4a8b4
Sha512 26c85b8cce7d68dc61ed4991d202a89c2475d58a6a6554186de8c38493d9d0e6482ffc9cc74214a6a21103a4162339e9c636c04c2ddd8cdcbfefdd5861b41896
SSDeep 49152:BgH90dxAEsVnaZkJxRhXozc0beuE8CyUU/1gv82MoBlGkMDUpa93ls:KKxAbsQtXwc0b1EzzU6k2MoPGk1Cl
TLSH D6D5239969F36D71D432C7B29FA3F0BEB16977801B61CE87BA8C74108E225945C3A371
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.dz[
.'25
.Bv&
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙