Suspicious
Suspect

81f1e315539b97a14949b2b84655a107

Share on LinkedIn
Print
PE Executable
MD5: 81f1e315539b97a14949b2b84655a107
Size: 3.01 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 81f1e315539b97a14949b2b84655a107
Sha1 4a3a0d9b858d50a4aa126d8741c9716f429ad0a0
Sha256 e6beb0e7fd1699c0dc2e5155fc8a168f894ded2f3f1da8bd34971238d5b0f404
Sha384 7e77728a07c2bf6c77172ce5ca61356d3aff5174b22648a60c1870a9fd9a507dfe606f1651f1a237dc38bb00f5e52042
Sha512 867c7c308afcd8b883cac16355b1b79a29cd79663bdd3d5ed8a66171ed10268c9c241d2040b531189c5f58d9a07439d047b9bfd7041a53d8dce5ed9ecd2cea84
SSDeep 49152:iibm0I+DuwEjbHCpAide169Uqe52k6lbhNQe1/2owMo1b+QYWnZt+gcNvTdEImE8:Bbm1+Du/b4Zde16ngDQbhY/1b+UZt+gf
TLSH 13D52389F9D33675E436C7FB42D364AEB12A379087B09D5E378967005D229282C3B36D
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.zOU
.k+b
._<N
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙