Malicious
PE Executable
MD5: 41bb9deb5df15c23e54b1945bc6e4976
Size: 3.76 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 41bb9deb5df15c23e54b1945bc6e4976 |
| Sha1 | a0338611eb552eb707052bff2baa2d367a53d4f7 |
| Sha256 | 0e96f03ffdc6a7f0b60591ef68f098e5684f59deafd6fb051a58d85f777bce7c |
| Sha384 | f5c34f8ac66aa7c5e3308b2d025002ab864de4978721cc5f14225e9a4cb7dbb09197c85998d4cbffa1ca0588ab5fabda |
| Sha512 | 865f8897d107b93eaab12da20625023584b95a3301d1613ee06d543a04e105841ac54ceb3ed575099354e675659258b85a3b1a6e5b5ba6e9865ca50e9255deed |
| SSDeep | 49152:wvy9++/0wBg7kdpzuRglwBJRRzu5GhuMjaHlFWjCwUVd:w/KT9wbqNMeCjT+d |
| TLSH | 20067C07BC8148A6C4AAA335C8A25641B77DBC891F3263D32A547BBB2F737D09D39750 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:dll~T1027~T1055>bin
Shape
pe:dll>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x395DF8 size 2408 bytes |