Suspicious
Suspect

3de59c7196a3da211bf49815d0c10336

PE Executable
MD5: 3de59c7196a3da211bf49815d0c10336
Size: 231.94 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 3de59c7196a3da211bf49815d0c10336
Sha1 0f1e55c6975dde1e770033f59c6fd00445c0050a
Sha256 28fd91c15efccb7678249f03890952819453df461eef83ef1b12a562f9d35ac4
Sha384 7dca032923f99bc67ed8db36af4b02c18c2feac55d4502d3386a9732428150fdcb2db967ad4d8ca6e0c1a415cb1d8e41
Sha512 5656cb5a9cfb44fdf49df5697f3990677b90dc1e7f0f73cb2afc8aba1a8a2b2bee82cf0c12261b50d50b8956daa7b9e5439c34095d9b83357f36e18e52db6c84
SSDeep 3072:lu7oXKl1K+qYfWEp8arPGZVGUo3t58TzhqOaMkvygjB3lJ8M3x/P93oMDHqcKdP:AAKlYPYVPK8UEoHgOaMbSpDVKdP
TLSH 66345A1A73A508FBE836823DC4531A05E77678160B61CFAF0764026A6F237D19D3EFA1
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$mn
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙