Suspicious
Suspect

3b23e3489c42b7d1dd895be45667ae06

PE Executable
MD5: 3b23e3489c42b7d1dd895be45667ae06
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 3b23e3489c42b7d1dd895be45667ae06
Sha1 bedb6f847129f6ec5ec373507626c2c1e8e1382f
Sha256 cfef64ebd87c672631f63f65e30f3b14815f690a8a922b38fbe34c3dffbdece1
Sha384 372020d3ffce4d94adce085446b72d93c900f861d057e5521ba88a8f614e10152490dbf9f38835afa26ee1d29744f104
Sha512 a6f41bc643886dd071783e17ace0e0cb35b56bfb5ddd04099d801968d5e9d5ca58da1ed38a8e1da20a54ced824b983f47c6072a1241ebc97417832a2fd4819d2
SSDeep 98304:UXOmSjvnB/GMI46JdTwYSUvnLfosuy0zo9Nvr0:UXO9jB/GMl6r06P5u1d
TLSH 08F5330AD2CAAFDEE30C6F7803563093D1E3152C94CF7B92513424E8E9A5DFA2756366
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙