Suspicious
Suspect

4369226435b74ef91427cb5bbb31e259

PE Executable
MD5: 4369226435b74ef91427cb5bbb31e259
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4369226435b74ef91427cb5bbb31e259
Sha1 9c3eba3be4c18bff5e1df32eb7feb60b1926ec45
Sha256 adbc4fa90c932a60fbfff9565c16b5554084dbf718d471fe6ebd9a0564026e88
Sha384 4b927de8aa227a0ff060466286d30e1d85c89ca3e276eabe622ddc8c8cf097734f58ceb58df4e614a575fdc30f51e262
Sha512 34148677d9fa53c41a1b3632732ea2eb9b3841d79a7be6e3334621d84f0c49777102985a1b161bd69cab39b38b478b5d91394a22daeb5d1798ae489c6a61794a
SSDeep 49152:jnsnnMSPbcBVQej/1INRx+TSqTdX1HkQo6SA:DMnPoBhz1aRxcSUDk36SA
TLSH B236239931FC91FCD1062574C4FB8E22E2B27CAE22FA5B0F9B80497A1E13755B750B52
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
No malware configuration was found at this point.
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
4369226435b74ef91427cb5bbb31e259
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙