Suspicious
Suspect

244b5bc6405f0bdf7126cb5ecaea0297

PE Executable
MD5: 244b5bc6405f0bdf7126cb5ecaea0297
Size: 3.01 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 244b5bc6405f0bdf7126cb5ecaea0297
Sha1 256408132988de44fe20d97429b5892c9666f4ab
Sha256 84cd27d8e92b05126f524451d3affccfa4af7dc5d5ddd7e1949dfea7d7ea699e
Sha384 c2f24fad6f772814001ebee5f89ba394381ac1e51f40f38f20269c303b7b923c4f318ca6365a661f52a23bc7029df8b8
Sha512 491efdb7d743026e1b74488a4377d9be399e51dc6b8f662405d4a4935a2ebbd0c974561e3e4c670e91c0a85cf6fc10c6647171fefa2d988a4a3c6740e76ffe65
SSDeep 49152:Yw2tqITl4HHaVIV8/+OQcu1KbpwRSnvA4WK97OcxL7nCVj8Vj2pEsfeB:Nol4aWVoOPGCSplOE3nbVim7
TLSH 60D5239AFEB76970C837C7B68C93E02D70683B524A758C9376CCAF014E52558ACB5738
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.Xf^
.Tc=
.Yv@
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.Xf^
.Tc=
.Yv@
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙