Suspicious
Suspect

156a1f3a78d7eaa3522f38686a854226

PE Executable
MD5: 156a1f3a78d7eaa3522f38686a854226
Size: 25.09 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 156a1f3a78d7eaa3522f38686a854226
Sha1 614526ee5cc167991c0408c33b00e4cd961fb5f5
Sha256 a5d07ca615baf5cf80059ca963915b616006e323cfbda14ce44ac775c5ba0ddb
Sha384 76e051c7a5a797f5ac823f8d9b28d9119c666d76c34ea65795ac99eb81cf26033d7f7e6c5b8ae8f2c0a61ff44a6a90c9
Sha512 4fff70e6d14b04f26a0240e4693ad61e851bc3c539af7e8fd56496d6a3b0555e06512a37eeeec7094b9414c8adc224f5b6a31b702ae36273e3d1cad5b149f47d
SSDeep 384:dpU6Gj9idaq1eln4neTOdRHBx4yEyPhsfcnkdCVUh:dp0jm1el4KQ5jENc2
TLSH 61B2E60EB76748EDC949D43881FB9636AA72BC0849B12B3E4324EB711E95B643D3DB44
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙