Suspicious
Suspect

06967803198f1be4c67fbfc2d5176ce9

PE Executable
MD5: 06967803198f1be4c67fbfc2d5176ce9
Size: 5.94 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 06967803198f1be4c67fbfc2d5176ce9
Sha1 d5739e2d137f2e15b2cb2d28224adcb91127181a
Sha256 40e7e77aff603f4c2ef17b3bc8ea836e714d0734a1e5b946e52f95536ec5c91d
Sha384 be798030fdafecff16796fa742ad5efeb0186c1f0a16ad433f203343ff75909ecd56a4250da90db171da2bfbfa231a42
Sha512 4fb3a4bc3524e320b664afdac3541d69ccac7747846dd6025122449357c0a360a767636a4d39c8d5a17ba524a83086ccf23e19c5a90debc6a606f4cc92f4d7f2
SSDeep 49152:cPCAHnZedWZ46DtXMjQVEmYEBcSD8Vdg1t7SV17Eq11Uc2iVCab4Gd+4lVB1w9ap:zSeMMjr7U+V191pnv4OHuI9z4+x
TLSH 34561816F25251EDC06DC174834A6232FA72BC8A47357AEF4BD08B212E65FE06F3D649
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft Team
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.cfg
.fptable
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: antino_client_template.pdb
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.cfg
.fptable
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙