Suspicious
Suspect

67407c17cca512455fde4fedff266435

PE Executable
MD5: 67407c17cca512455fde4fedff266435
Size: 2.9 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 67407c17cca512455fde4fedff266435
Sha1 2399e9bda0501dea00ef3c573afbda097617e93f
Sha256 2d8f961595b733541e9562cb07ea7f906af4e2e34869e5ef24344d52aeaf42ed
Sha384 a98e0198c6d95f78692a25217459b14d0bc481f8bdc980c2888711953651fec4ee96bb0865555b9cb6598c3a53e6010a
Sha512 10ccaa2bda250c7482d5fd65147883279b07c72697a4138ee964a6a331fe6a15ac789dce58dde5be396a79346c3196883c2574b1aef5959bf54a20c54cc47db1
SSDeep 49152:PJVXgwCEAx9nCeb9GNNFiYeYdMI4v7eUBwZ8meLNM803afEhD4ZNng6t6I/0449C:RVjAx9nlQhp1at7yZy28OAg6II/H4IzZ
TLSH 4FD523AB65F218F8E47BC3B28F02E47D706E7B504BB54E13BACD6D009E229545936336
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.DH=
.^73
.T}s
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.DH=
.^73
.T}s
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙