Suspicious
Suspect

09b0a593b6fe9d1acd16b5b9cb7688f1

PE Executable
MD5: 09b0a593b6fe9d1acd16b5b9cb7688f1
Size: 344.06 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 09b0a593b6fe9d1acd16b5b9cb7688f1
Sha1 c725735471342c3b6f988134c9cbf7d61fee8f6c
Sha256 145dc465efaf3cb040b4fdc344368579625b7cdae4d10a9513b2fa1745b4c362
Sha384 7c29a327fc7c09320cf35f913bdcc7b448d59213e2e964223a1105612b9302fc8dbd9ebeb3806a8948fc4605a2b00f06
Sha512 b374cb511380e09b62b6bc522811b5d7c62828fc3dbf6593085eba01b9a8a9fb07334b6665684f48b4606928c14c95bdd9aedb167c63899e3add09d4437cfeaa
SSDeep 6144:ORKXTw/Vb358X3JwgdubmMbaMVLVwMxbJjpepIH+Jq:ORKDwZ35nYuK4VV7bRpleJ
TLSH F5745C477BA870F8E0378234C9520995D776BC3296609B5F03B46E6EAF337914C3AB61
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
BIN
ID:0000
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
.rsrc
Resources
BIN
ID:0000
ID:1033
RT_ICON
ID:0001
ID:1033
RT_GROUP_CURSOR4
ID:0000
ID:1033
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 3 STICH kept: 1secondary ignored: 2
bin 2

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe>pe:rsrc>pe:exe
Shape pe:exe>pe:rsrc>pe:exe
3 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$mn
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
BIN
ID:0000
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
.rsrc
Resources
BIN
ID:0000
ID:1033
RT_ICON
ID:0001
ID:1033
RT_GROUP_CURSOR4
ID:0000
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙