Suspicious
Suspect

69b37db2fa63c34310b4718db61e543a

PE Executable
MD5: 69b37db2fa63c34310b4718db61e543a
Size: 3.5 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 69b37db2fa63c34310b4718db61e543a
Sha1 7a88e7e9123692d96327ae1b04cf56182ebd522f
Sha256 571fa749ae3fa2786a9dc2741cb7c99f4a347b34e9304be1d0ecebeec7ae14de
Sha384 8c80d87f937226cba1b98354fe998a5cb17aa6c5385c4e41e1867d44a8706738a9263e658d8aea6b5e0d0d9ea9656d94
Sha512 cc50d1840bc657e828426ec3de9ab0e4f9286f6fe04eb364cf9c1445bafa2cce3d07beeb44923874326218b63fb9da0b99be2221ca2500309758f74fbaf95844
SSDeep 49152:U4WcOm2aygLZ+CiTMV1vy6OtqDhKKxSZZoHt:Ur9+1vyHIDvSZZo
TLSH 47F57D07FD91C9EAC098637194BB8256B7617C042B3227D72EA1B7383F72AD46E36714
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikontElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_b9fb5ca4.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:1033-preview.png
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
ID:000C
ID:1033
ID:000D
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

3 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2img 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x355C00 size 2416 bytes
[Authenticode]_b9fb5ca4.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:1033-preview.png
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
ID:000C
ID:1033
ID:000D
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙