Suspicious
Suspect

5f2e5fcc62332488c7719734e17fdfb6

PE Executable
MD5: 5f2e5fcc62332488c7719734e17fdfb6
Size: 2.96 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 5f2e5fcc62332488c7719734e17fdfb6
Sha1 452f597bf23f1e02f0452ee02ecebea81911e6a6
Sha256 8c7334c6455f4e7d62a9eac56532463b06c50ddf8755610b71af7d062f0739ae
Sha384 3a587d877882ceb56ce9615f1c9f0e884c74d6c50609372e145649dffad0a482c9e9566c293ae06a1c15d99a33c2a29c
Sha512 7a2e977bf2c353391e4b2e321b44d7ad6c46a4ae96e4191cadbec5f11491e3552099f5c90697478f033a37a45661b0b1194915caf86a98c1bbbe75925cec501d
SSDeep 49152:feuv5UBFzm7raanrljR51kwk7UjsLNTOtyH6EfCqIxuKsXlcca8QlVA:feu+zm/JtVjsx8JEfCVHs1V/Qc
TLSH 13D5239E7DF529B0D836C7768FA3F43DB02977898B208D837ACD66004D622580D797B9
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.qc9
.;~f
.Mpf
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.qc9
.;~f
.Mpf
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙