Suspicious
Suspect

204658ad0836e12c743a26a7e5851b70

PE Executable
MD5: 204658ad0836e12c743a26a7e5851b70
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 204658ad0836e12c743a26a7e5851b70
Sha1 f913c314b3ab883552e9997b92dce7809cf65f27
Sha256 a4aa0f9613695363fdebef9cee46d959bc98a97e5e7fed466157b3afb01c79a5
Sha384 77c3d2b2c5a4217435cf23518699fb6e61fa9525030760d300ca8316627f19ba462948b691b5fbe883fdbd2c944ed157
Sha512 a309e4c88481b503e67e35f71c237c19582ed0ffe0f6b1b6223574cf75a91041fcd0f6095dce315f869a5b8fb3ce3e9ee1007fa53240b84035ae3ed43ea16f47
SSDeep 98304:4HTDAnrJwJ9QAlhpnFODv/4sv53HNmjgMOeGPETdzO3:4HTDAnrJwfhzOhxXmbzmOdq3
TLSH 53F5336A93BCA360C5B9BFBF27F51309C565954E0DB13062B7281265E1B7863E3342CE
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John ReiserUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙