Suspicious
Suspect

41df7b4d070dfe299a8355901945b5e9

PE Executable
MD5: 41df7b4d070dfe299a8355901945b5e9
Size: 5.24 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 41df7b4d070dfe299a8355901945b5e9
Sha1 524a1213ad2bd6b893f4b9fb703f7d97bc253a89
Sha256 eed6fe7c2b6252644f6617c45721dca2b412cdec28a4f3687fc753f099add67b
Sha384 8baa2e5661ec45f1e6ff595517699e098ba056aa54a4a7dcf2ac0d9f140c617c1bb165cfc0f6887db07d2e6f11c7197a
Sha512 a3cdeaaf5a7e3216346e9b764d9835a809b4dc44db9885c1435d2c2535bf9c6e598bde15d95948f7ad4e2f9ffc75b2e8ed50dd8f0d97f072a51acba6f10c0d98
SSDeep 98304:ZCOzagG+/PmVVbGy3hOO3xEBS47yvwUmEEz3E5SPuXBoi:UOmgEqy3h1xEBSZvw7E4E5zRZ
TLSH 463633A17DC690B2C04AC7B4A597757EB07A7BF149A07C1E39CD3E154E2BE08153E386
PeID
Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12UPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.$y'
.J_K
.iEO
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.$y'
.J_K
.iEO
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙