Suspicious
Suspect

3d6863e2de3e52f7359cc1366c9143ef

Share on LinkedIn
Print
PE Executable
MD5: 3d6863e2de3e52f7359cc1366c9143ef
Size: 4.11 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 3d6863e2de3e52f7359cc1366c9143ef
Sha1 562ba4fff1d7ef1a06bc5404970f0a6418ebf9f3
Sha256 3044416f2a33213a25eddda36cf89533d6edf2fed6ea018ee858238099e545de
Sha384 f402bb361a71f06f855852c01680eb9c033ee41172c307d0a486688b36aef36d64f5dafa29ccb650309136aa7bc81c04
Sha512 5db6230f06f35c2cb07f782c50eef48157083993c341d622d46a47dbc0767bee8c1042d74649f95254265e5ff01bad78a126aeb50a93f388e6826468482bea45
SSDeep 49152:jnXnAQqMSPbcBVQej/1INRx+TSqTdX1HkQo6SAA:DXDqPoBhz1aRxcSUDk36SA
TLSH 4916F601D2E51AA0DAF25FF7267ADB10933A6E45895BA66E1221500F0C77F0CDDE6F2C
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙