Suspicious
Suspect

2cd06cb5f7c981a645f09f4ce18fded2

PE Executable
MD5: 2cd06cb5f7c981a645f09f4ce18fded2
Size: 8.92 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2cd06cb5f7c981a645f09f4ce18fded2
Sha1 97fa8a35c1a87a91d50f9b1e78afa920958ef675
Sha256 bea73996b05e7c177b62293403c43cc7a10efa694c664572cfaff83017cc2a24
Sha384 1f1715be81397467a9485a8a71d54ff56c88179ba59f3d549847c3ab3a2448ecc17cc1eecacb0f2d7559f73cb16caea6
Sha512 9b3027a256766d37b1b3dbe6fa56fba03805ebaab2091593067aa0792c5765f31fac719e29feb7ac4bb917dd0f80ca1a5f51f47d9096aa4eda21d9ced3403c96
SSDeep 196608:fnq43p9aeZHAK6NG6VfwyGeI7mabSXDo7KltVkqMlBYnhyk4yPVz1ELEU0ofrPaR:Pq43p9CrNhfwyGeISASXc7kVpnZTNz16
TLSH BC96AE9273C4AEEAC041DD7A9705F23581A39D63CEB791C469A3CB0A5EB5A114F3CF90
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit )
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙