Suspicious
Suspect

6fc570b518436ff8daf43a4a429c3470

PE Executable
MD5: 6fc570b518436ff8daf43a4a429c3470
Size: 2.94 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 6fc570b518436ff8daf43a4a429c3470
Sha1 fd249494617a367b641da71a704b117629d4dcf8
Sha256 fc029c04afaa0cff7e8baab3a7c7688d00d6d1b9157390071ea3399f1c53b2a6
Sha384 6ff15b0cf0da492f6bb4d98adb3565cc0d24bf2e20d6b236de26eda8aa9f8f54006416a3c48e3686d0e625b7d9ff0d74
Sha512 8e35a83c8070da22c5092b099b2ec613bf5fc656da23df4c111003c8e7e26766fc935493f9c240a3480a818df6ea8718578a2b4df0dd57d3e47f9df5b07232b0
SSDeep 49152:EigDgFAnnlN3hyHuVis1tm729RItA4QwQgAtUHHLV37EqHpnoSuMRuZlceAJyOS2:WDnlphWuVPtm74RItbVQSxAqHpnbuGB2
TLSH 3DD5229939FA1EB0C43AD7F68F92E06EB05A7B9183709E9772CD68109E6315C1C353B1
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.Z6<
.}IN
.-iU
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.Z6<
.}IN
.-iU
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙