Suspicious
Suspect

4163e1957558fd73ba4be5059ffccae2

PE Executable
MD5: 4163e1957558fd73ba4be5059ffccae2
Size: 329.22 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4163e1957558fd73ba4be5059ffccae2
Sha1 5096c53e06c1cfe2bb7b1b8282243b5140cb7317
Sha256 e4ce0480d600aee2aaad8df75b2e50ffe369b1f015d72f9ea7f7cbd38b3d684d
Sha384 ba81aca08b618050feb3943c33463b6134456a48f79de7cfd805c881b45f250bd3b81084c4d016957a1613eebfca7355
Sha512 e2ff30d2874ff7e17be3c4e57d88de9445e22bf35c4c6f8531291514ff949c111f00f3e38aca7cd1fe47fa7e36609007fe3bf0545aac01358385b87ce19359f8
SSDeep 6144:PoL4f6cqsH++hLmFYp4HDsWXYao5dAJ20FCtWpggU32bL6HkxyCrdxh/:PoEfFqsbLmaWXYapJlSWpBU32bLOUrd7
TLSH CB641252B15B0994D2E8483785713058A1ADFF7D32C6EF38DA6FC106B75EEA1CE990B0
PeID
x64 - UPX exe - NRV2E/7 compression UPX v3.95 -> dhondta
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙