Suspicious
Suspect

55583a54c373d79b6a4ed0808ddb65b6

PE Executable
MD5: 55583a54c373d79b6a4ed0808ddb65b6
Size: 3.02 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 55583a54c373d79b6a4ed0808ddb65b6
Sha1 fbacd142ce70b0ddcbc3d326c1e20023042ed9fb
Sha256 4a5a96c2e9926de8ac4f7ff7db6f3c0eb5f81fe83b1b9cb28c3771f05c045fbc
Sha384 cfa1b29225ca88c5213032c7c310afad4dc24ec109a19682f9211b1e8cef560a13204a18065ba5abd9174678218a0bc8
Sha512 4659f0a7edcdbb314795bf944513ad72992891f857dc651e2a991a230a0a75f196091e982951f829b0ffd89a53163086edf2b259003b64c5f2d3cef90f171157
SSDeep 49152:bh3NddQ6hURP14XkB44WaDLtu1QRQmfLLJ26+UH56HXdrWhJjI2jqDO9ANql/uTO:t3NddQgURP1AkB4pCoSdLgI56HlSjI2t
TLSH C8E5238D7CC67976E036C37787E3A4BE71297B8449B08D5E36CC7B406E125292C7638A
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.|Hj
.V^u
.LjT
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.|Hj
.V^u
.LjT
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙