Suspicious
Suspect

5402579e5a3bd0af2e274990ab50216f

PE Executable
MD5: 5402579e5a3bd0af2e274990ab50216f
Size: 4.83 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 5402579e5a3bd0af2e274990ab50216f
Sha1 c9b8dcb580982b6a7f60dc2d43b76db54baa0caa
Sha256 1556696245609c75da850451ef8a44f421a89c8f563d77611fc66a9809d2cfd0
Sha384 f593bd571507444a60a88b08d85831cf9c38a746b08a6360e9f355646dbaea2bd9e3208fd2cb8968a21f87c810199ae8
Sha512 fad467949ae65338999d73ee44cfb2c70e500cc3d543fd4fa3894d38c63af5710bc0d1989c8fcbd2f4d7f6079ab6265dbcd165ac23b79ccfce6ca530f5a7fa02
SSDeep 98304:tU5Ng326Vcc1KppvxthiFVJFYRF+TWVL2Gwhg4IsTpQ7hmVC2de+pDMYVl9RmFCV:tUjg31e2K3v9+VJmR2bDTpQ7sVCwNL9z
TLSH A426CF86B3C47AD9C412DD3A5714F232C1A2B9338EB6D0CA5E97C70A4ABAD514F3DB41
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit )
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.managed
hydrated
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.managed
hydrated
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙