Suspicious
Suspect

68258131b3a1b41aa2e21674a602c3ec

Share on LinkedIn
Print
PE Executable
MD5: 68258131b3a1b41aa2e21674a602c3ec
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 68258131b3a1b41aa2e21674a602c3ec
Sha1 066901444b77479fdec1441cd5bb1d69bb758dfd
Sha256 656f08c0cf09e32acc0729536a32da8ad61079d29fee18bcb3a1792e3ee5e5c6
Sha384 94e2543d724e93bd3b7acde4c12217b357d6c634bedb014b5b846e5333fd555e19164eb4d4da08c483f5bc262e80bd6e
Sha512 43e063cf6c5cd520d834060b2fdbddb3176922c2bb1dc37b31bcf5bd41212d477d033207522542f090d6a19770069a8f15c1f01dd7547b6bc8b40bb24f8b2c9b
SSDeep 49152:jnsnHqMSPbcBVQej/1INRx+TSqTdX1HkQo6SAARdhnv:DMHqPoBhz1aRxcSUDk36SAEdhv
TLSH 2136239932B881FCD106197484B78E12F3B37C6A12FE5B0F9B40457A1E53B96FB60B52
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙