Suspicious
Suspect

06c32b427b048441358504522d64cbc7

PE Executable
MD5: 06c32b427b048441358504522d64cbc7
Size: 2.94 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 06c32b427b048441358504522d64cbc7
Sha1 3a0fa3624add523935e3008b91927716e44e5807
Sha256 a9b140ffc2de43182aa2dc35cf325eebdf5f0571a72a58ec85635ae10c266a6e
Sha384 2a0635b995c81a0c53922b44942d7c1c8170a2ced0d3c1751cb88a5008c69ef477709f71288b8a174f679cf765fac2ef
Sha512 3e4a24a15f1ce56f23408b3694ffb03aa05ed78b287efb58cc84de5656e1a33c22a49b5d79e5e664580a9bc4bf385dc56b8c03248c01ca2683bdceb3203f4749
SSDeep 49152:GxCsQd75HFFFwtti7zoc3cc55PePaB+iuCr+MSyoPKccvZmU0fUg7VwN:zdZzFw8zr3e1iuCtL4CTC7Vw
TLSH 41D523A6A9B66934D837C3728FC3D57EB06C7B468A624D97F6CC2A004D03A546D3B371
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.Q|(
.oP9
.?r,
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.Q|(
.oP9
.?r,
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙