Suspicious
Suspect

68deafe1fdad2e79c7d1618610d47d4e

Share on LinkedIn
Print
PE Executable
MD5: 68deafe1fdad2e79c7d1618610d47d4e
Size: 2.98 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 68deafe1fdad2e79c7d1618610d47d4e
Sha1 2abce118b8d51a63f8aee969ccdbe25575ca65ad
Sha256 dddc309f33164aa90670eac7acb6e2e88f4e927bbab5249c8f2ac3e5f97b889e
Sha384 44cbe02684e997b2cc3bf89f4b5f164439c383b0faf27d0606dbcc646657dc5e60c6874ba4f7b30d4e89773b33f674b1
Sha512 7f3ea11256bb2e25625a7d076253eefaf6ca86bc5f93a0ca3030fb9d3ee097ab2bd4c38e785f99fbf77b7c62fddaedb2a806f8ddc8748890c325cec20a95e2f8
SSDeep 49152:uYCXMGJP2tZEryjN/THlxVc+qPFlbTzDLlTd0eJ5yiadH2mRVQxPfQUWOL6vzJHc:VCXpuOMbHW+ufpCeJ5y3dH2VY5JH+1
TLSH 26D52299FDA211B1E436C7F7478374ADB1AE739486E44C9B71CD5B106C22A102C7BB3A
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.605
.jb}
.Z
|
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙