Suspicious
Suspect

3cab2600fe139a02cb5b9661a0ac107e

PE Executable
MD5: 3cab2600fe139a02cb5b9661a0ac107e
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 3cab2600fe139a02cb5b9661a0ac107e
Sha1 18cf30c933001ccb163329937fb9c14fdeb7c5fc
Sha256 49e95f2f47eba1031337bef9940f363fbe3491085a570f1ed4f6a20f058600ca
Sha384 0f0a9d89857c5bb5a9865e176decc2845f654b8736a591e5849f387e97d1e92c1d430ec329824faf9d05b1ec35c6bf22
Sha512 1235ade4d0064ce33eef0e4cca9835cf1c550e76a88beb88783bbb86e76acc3b5249d0b50937cf22916bbb068e56b22d6e68095c4a97a3007bd0e5e2eb4a9978
SSDeep 98304:Y8V4ZYfi/zyxOJlNDB1/fc/ntt/Va/uc886m:Zyr0OJPDHcT/A/
TLSH 5FF5332D81B6CEFEEA3241B57621AA1D77E7C2B302D1F81AF3B7196A4458CCCC953191
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙