Suspicious
Suspect

45d0e1a41d72c399283c796d137016b8

PE Executable
MD5: 45d0e1a41d72c399283c796d137016b8
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 45d0e1a41d72c399283c796d137016b8
Sha1 4e306af020335dabe624a5b8a408269a6a925cd6
Sha256 ee7fd9a7b8d73554b4d2ca3a0b0a077987554d3c98b56a7001198bd3d5ab251b
Sha384 e945df7fbdbfc0a42e8bfd8b459c79069a8be6d48b2d0ac19e1a074637af541fdde777f16d5b2fc93ccaaff5a42d65cd
Sha512 08e3f08027cfb49e64569689e36b74629f7b8d222c48952c13c72ef442977857310351b43ea1c47d4ca881aa4133cbcf025361a8038fd5fe7cdf3929a9b66afb
SSDeep 49152:jnXnAQqMSPbcBVqxJM0H9PAMEcaEau3R8yAH1plAH:DXDqPoB8xWa9P593R8yAVp2H
TLSH 28363394635C60BCE0A6077484734D2DF7B77C6AA3398B0F53D4876A0E13792AEA8B51
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
No malware configuration was found at this point.
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
45d0e1a41d72c399283c796d137016b8
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙