Suspicious
Suspect

4e8881384d316ee8ce7fce6340416d0e

Share on LinkedIn
Print
PE Executable
MD5: 4e8881384d316ee8ce7fce6340416d0e
Size: 2.99 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4e8881384d316ee8ce7fce6340416d0e
Sha1 80de2cfea5e6acd9cbce68d7a9385fd786f4e31f
Sha256 3b3ce93f2d1b3be8f758bf18e9079a120f2c094f8d0d1fad3940d7b0d0e4c4e1
Sha384 90a3034a52243d97f0f7b890ce4754b08a4daa9ed64e2ee0d0baf59f6f396abe46d82a16cd89bbd5f49b9bf5d97bfa34
Sha512 e0f62bccf9830eaa0ae0011775fe09a1c494e93b9a39856b24480627f842265968224b8ba07f3d0b1e87ab03ba419073a79ef90c6524ce5fd5b5e25fe2a359ad
SSDeep 49152:BZ36jfWXUSG+1+KWq4Ju1keqPeGIb1Kl8anTMKU9QkH5yKZ2B4FGDjG3:B4WEl++KsJuQ9o08w25yMQ4wDa3
TLSH BED523C9FDE609B5E472C7B756C3A47EF0287B4589708C9A36CD2B405D57A282C3633A
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.8-w
.W_7
.58X
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙