Suspicious
Suspect

492dbb88e792e0e970bbe4aeb948e3d9

PE Executable
MD5: 492dbb88e792e0e970bbe4aeb948e3d9
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 492dbb88e792e0e970bbe4aeb948e3d9
Sha1 15e6954bb4893341d2cca91506969c9d2c6633df
Sha256 37cbee9242444dffe560c8f2dfefa6ec0ff4bda186824bb5ace22ed8cd486436
Sha384 a48176dc057511299cab52d839452c3934954131395643cca7b50017b0bc773e05d85d23c98139dd907026e1fae278bc
Sha512 7ae5054f980966c100861ab9d1fd12c37cd35d1800704bf2fae913e08d4fda5fcfdd721205daa0ec9c55d51041e7ad63786baf069d19c568b9bf55bd76a93a17
SSDeep 98304:0noBycyFyX5sk1lf3c6xXl829SI9BbkZyJCqoOa8X6yOIWth9F:0nodZVlf3cDQSI9OyZRGIo9F
TLSH B8F5334435F09D19C80A4E7A208D26564AC03FAB4B279FEA472B5EFC705DF01D29FE66
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙