Malicious
Malicious

6d0a446f28f2c74438a6f653842e567e

PE Executable
MD5: 6d0a446f28f2c74438a6f653842e567e
Size: 15.68 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 6d0a446f28f2c74438a6f653842e567e
Sha1 548b42d1acf75ae53b5b38ea84b665c249cb4ccf
Sha256 f80f8214cf32d0fef1cae4efd394216672e840fede150008cfad52de228aee0c
Sha384 08c5c7f220cb571aa7c92df36700340aeb04138d7236cd5b0a57feb5a2fd5fc0b6b7d72bbdeb5a3eba06d91b783628e5
Sha512 cccbd1057c6f234cbe435967f10536f6433a437961a418f075ea876e938a1acd90e7f7773e8e997bdd514bcc1301ecdf534878af66595c6b9ef7febf92ac1e89
SSDeep 98304:ZMNVivUzQ7qpS8Im3YBD/4VUtWduX+HM7XPdB3F5yzxU9b:ZMVivUE7qpH13YDxb
TLSH 9EF65A07BE8641E0D59ADA35C0BB2721BB35BC4CCB3477AB2E9061B02F653D16EB5B44
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamUPolyX 0.3 -> delikontElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_64cf5ff3.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0xEF1600 size 8056 bytes
[Authenticode]_64cf5ff3.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙