Suspect
PE Executable
MD5: 6fd62b62dee269d1a59d95e4d2370b36
Size: 5.3 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 6fd62b62dee269d1a59d95e4d2370b36 |
| Sha1 | fa8568e71e9b948b91e70ace4304b870e124067a |
| Sha256 | 91cd12ce85d9e32f75f732ea090a1385ab4e31ef0dd6904ccdf7b5d1623ddba8 |
| Sha384 | 95253f480aca1330864ba4643385bdec456bcd3f649f4d041a61bfcde998dcfa10eb2793193ed9b95b5660210c992b57 |
| Sha512 | ab254af5eeda1e6c519a81072a6253c734195b350a0a0d114282cad8bca21eb47245e30ce02c17d5a13166f502af238fdcea13a60068535f86ca078c367f480e |
| SSDeep | 24576:jbLgWbLgddQhfdmMSirYbcMNgef0QeQjG/D8kIqRYoAdNLKz6626M+Am:jnXnAQqMSPbcBVQej/1INRx+x |
| TLSH | 1436D642D6D52EA0DDE14BF7267A9B10963A5F1582ABA16F6225000F1C77F0C8DE8F3D |
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:dll
Shape
pe:dll
1 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader FAIL, AsmResolver Mapped OK |
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential