Suspicious
Suspect

22adb28d3856d9ede2e24b298f2f6cb8

PE Executable
MD5: 22adb28d3856d9ede2e24b298f2f6cb8
Size: 5.24 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 22adb28d3856d9ede2e24b298f2f6cb8
Sha1 26d64b316de7e461d0c3feef0f8d11cbf0e63f31
Sha256 732d975dd11cc538475be1c8241c8073ae4eec0df32dc1943ede5ae6c1b488ad
Sha384 c5e4c35b920a163df8137bcce3d365be6b31c568ddfad9185af05f743434b73fa5c7a19142592a59d1669bb6f43a9d83
Sha512 7e79f43a82e20a9a1a0779a40eaa99c1c2711397ea141529d0ec54fded16b8a072e55a5715f7da0408ed4a3c7c0afdba2020d8f8f5f77e8d80b8305a621b285f
SSDeep 98304:THe0P2qffhDCk5Awiux0eL8o14YsAa1hbQF3ApLlapH5GVfawxbvEe:T+0bpCWyuvAO4YsAaLb6w/4501xbv
TLSH D53633D2BDC666B0C452C3BC0163267DB27ABBE59A70BC277ADC35584E97B08547A3C0
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.l8q
.a5'
.&nb
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.l8q
.a5'
.&nb
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙