Suspicious
Suspect

130484261579a110fb671d5e98535f58

PE Executable
MD5: 130484261579a110fb671d5e98535f58
Size: 2.99 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 130484261579a110fb671d5e98535f58
Sha1 bc2877870211b60f21ccb5b558638e3441e3dadf
Sha256 79262e3c0a7d86ee185f4e20cf2851316e8901ac260575a8d2918d1da5b0aac0
Sha384 a724b9e75b1dbb78f4cba251a226d1088b2c578a99dbbcbf7bc537f5f2774b6de85a221e9ef4992232515cec73e55222
Sha512 86e06032c4bf034b3ff0b48fb91690ca5ee7528154dad62e0769bceeb0fe60451d9259adb38fd64ee8dfe8f6640492a3c990f484405a93d1fe6fc85a1c633e99
SSDeep 49152:v5kif5Oc5aDzSfVqDGPl0PLQ88pLhYwXBFc/H/i+mstBIons8AKShKHC0:RBY2aCfsDcaPLQ8gvBF8fi+mEpns8AK5
TLSH 89D5238A38B62AB0E876C7B28E83F47DB12A7B464BB14F177B8D15114D138485D3637E
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.ynm
.r)Q
.t_n
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.ynm
.r)Q
.t_n
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙