Suspicious
Suspect

5d6d7c80442f84e2cb1289d7731c8a80

PE Executable
MD5: 5d6d7c80442f84e2cb1289d7731c8a80
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 5d6d7c80442f84e2cb1289d7731c8a80
Sha1 6d8e64d34eef97463c4574101125cbe25a6dcc3d
Sha256 e1f89981a34240aadaffdb661008f462962aaa01030ae04a6cbc05def486ee3c
Sha384 dfba222f97f59320f5c752dc70568e05bd08651943f799eca7bf578822e0b0bde3084a47a69ff56b0d779e0df2e36e92
Sha512 5d87d8d260c1bc4543ea11bb73606866e198cdf378bb0e72b0e5e9e6dc3528252721879046f1d4c5141726ca90556a5cd40ea84c50315cd608629f135aa315f5
SSDeep 49152:gyVoBlMfJRmYCksTqrDc/wid9gFCRhvBG3W1hTdXu8hclsS/77PjUK3Ll8ogiovU:LoBn/Tf/QEhvA2TdXAGK3p8AAgYw
TLSH 6BF5336C8A849C30F6BC7EF11A7C760F6010D37F84469AB746F418A616DD3E469AC26B
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙